CVE-2015-10032: Healthmateweb Project Healthmateweb
Medium severity, CVSS 6.1. EPSS: 0.6% chance of exploitation in the next 30 days.
A vulnerability was found in HealthMateWeb. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file createaccount.php. The manipulation of the argument username/password/first_name/last_name/company/phone leads to cross site scripting. The attack can be launched remotely. The patch is named 472776c25b1046ecaf962c46fed7c713c72c28e3. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217663.
Affected products
- Healthmateweb Project Healthmateweb: before 2015-02-14 (fixed in 2015-02-14)
Published 2023-01-09. Last modified 2026-06-17.