vendor:
OpenMRS
by:
Gjoko 'LiquidWorm' Krstic
7,5
CVSS
HIGH
Local File Disclosure Vulnerability
22
CWE
Product Name: OpenMRS
Affected Version From: OpenMRS 2.3, 2.2, 2.1, 2.0 (Platform 1.11.4 (Build 6ebcaf), 1.11.2 and 1.10.0)
Affected Version To: OpenMRS-TB System (OpenMRS 1.9.7 (Build 60bd9b))
Patch Exists: YES
Related CWE: N/A
CPE: a:openmrs:openmrs
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Ubuntu 12.04.5 LTS, Apache Tomcat/7.0.26, Apache Tomcat/6.0.36, Apache Coyote/1.1
2015
OpenMRS 2.3 (1.11.4) Local File Disclosure Vulnerability
OpenMRS suffers from a file disclosure vulnerability when input passed thru the 'url' parameter to viewPortlet.htm script is not properly verified before being used to include files. This can be exploited to include files from local resources with directory traversal attacks.
Mitigation:
Ensure that input passed thru the 'url' parameter to viewPortlet.htm script is properly verified before being used to include files.