Freemedsoftware develops OpenClinic GA, a focused healthcare information management platform, with disclosed vulnerabilities centered on application-layer weaknesses including hidden functionality, unrestricted file uploads of dangerous file types, and input-handling issues. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Freemedsoftware over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-14488HIGH OpenClinic GA 5.09.02 and 5.89.05b does not properly verify uploaded files, which may allow a low-privilege user to upload and execute arbitrary files on the system. | Jul 29, 2020 | 8.8 | 27 | NO | NO |
CVE-2020-14487CRITICAL OpenClinic GA 5.09.02 contains a hidden default user account that may be accessed if an administrator has not expressly turned off this account, which may allow an attacker to logi | Jul 29, 2020 | 9.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Freemedsoftware.
Media articles that mention a CVE ID that affects a product developed by Freemedsoftware — matched by CVE ID, not by vendor name.