A remote command execution (RCE) vulnerability in NextGen Mirth Connect v4.3.0 allows attackers to execute arbitrary commands on the hosting server.
References
| Link | Resource |
|---|---|
| http://nextgen.com | Product |
| https://www.ihteam.net/advisory/mirth-connect | Exploit Third Party Advisory |
| http://mirth.com | Product |
Configurations
Information
Published : 2023-08-03 03:15
Updated : 2023-08-07 19:37
NVD link : CVE-2023-37679
Mitre link : CVE-2023-37679
JSON object : View
Products Affected
nextgen
- mirth_connect
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')
