OpenEMR 5.0.1 allows an authenticated attacker to upload and execute malicious php codes.
-
Updated
Jan 20, 2021 - Python
OpenEMR 5.0.1 allows an authenticated attacker to upload and execute malicious php codes.
OpenEMR <= 5.0.1 - (Authenticated) Remote Code Execution
OpenEMR < 5.0.2 - (Authenticated) Path Traversal - Local File Disclosure
OpenEMR < 5.0.1.4 - (Authenticated) File upload - Remote command execution
Remote Code Execution - OpenEMR CMS v5.0.2.1
Add a description, image, and links to the openemr-exploit topic page so that developers can more easily learn about it.
To associate your repository with the openemr-exploit topic, visit your repo's landing page and select "manage topics."