CVE-2020-14485: Openclinic Ga Project Openclinic Ga
Critical severity, CVSS 9.8. EPSS: 2.5% chance of exploitation in the next 30 days.
OpenClinic GA versions 5.09.02 and 5.89.05b may allow an attacker to bypass client-side access controls or use a crafted request to initiate a session with limited functionality, which may allow execution of admin functions such as SQL queries.
Affected products
- Openclinic Ga Project Openclinic Ga: version 5.09.02 only; version 5.89.05b only
Published 2020-07-20. Last modified 2026-06-17.