CVE-2015-4591: Eclinicalworks Population Health
Medium severity, CVSS 6.1. EPSS: 5.1% chance of exploitation in the next 30 days.
eClinicalWorks Population Health (CCMR) suffers from a cross site scripting vulnerability in login.jsp which allows remote unauthenticated users to inject arbitrary javascript via the strMessage parameter.
Affected products
- Eclinicalworks Population Health: affected versions not specified
Published 2017-01-10. Last modified 2026-06-17.