Vulnerability CVE-2023-37679


Published: 2023-08-03

Description:
A remote command execution (RCE) vulnerability in NextGen Mirth Connect v4.3.0 allows attackers to execute arbitrary commands on the hosting server.

See advisories in our WLB2 database:
Topic
Author
Date
High
Mirth Connect 4.4.0 Remote Command Execution
r00t
01.02.2024

Type:

CWE-78

(Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') )

 References:
http://nextgen.com
https://www.ihteam.net/advisory/mirth-connect
http://mirth.com

Copyright 2024, cxsecurity.com

 

Back to Top