vendor:
OpenEMR
by:
noraj (Alexandre ZANNI) for SEC-IT
8.8
CVSS
HIGH
Remote Code Execution
434
CWE
Product Name: OpenEMR
Affected Version From: < 5.0.1.4
Affected Version To: 5.0.1.3
Patch Exists: YES
Related CWE: CVE-2018-15139
CPE: a:openemr:openemr
Platforms Tested:
2021
OpenEMR 5.0.1.3 – ‘manage_site_files’ Remote Code Execution (Authenticated) (2)
This exploit allows an authenticated attacker to upload a shell file and execute remote commands on the target system. The vulnerability exists in the 'manage_site_files.php' script of OpenEMR version 5.0.1.3 and prior. By exploiting this vulnerability, an attacker can upload a malicious file and execute arbitrary code with the privileges of the web server. This can lead to a complete compromise of the affected system.
Mitigation:
Upgrade to OpenEMR version 5.0.1.4 or later. Apply the patch provided by the vendor.