The most popular open source electronic health records and medical practice management solution.
OpenEMR 5.0.1 allows an authenticated attacker to upload and execute malicious php codes.
This repository contains automation to deploy OpenEMR on Azure.
OpenEMR <= 5.0.1 - (Authenticated) Remote Code Execution
OpenEMR < 5.0.2 - (Authenticated) Path Traversal - Local File Disclosure
Build OpenEMR web forms from a Spreadsheet, Google sheet, TSV or CSV file
OpenEMR < 5.0.1.4 - (Authenticated) File upload - Remote command execution
Remote Code Execution - OpenEMR CMS v5.0.2.1
Console based REST API Endpoint Testing tool for OpenEMR API. This will have Testing tools made with Retrofit and Spring Boot separately.
This folder contains Proof of Concept (PoC) scripts for exploiting vulnerabilities in OpenEMR as part of my TFM