ZeroHour

CVE-2018-1000646

PoC ×2
CVSS 3.0
8.8 high
EPSS
3%p88
Published
()
Modified
Description

LibreHealthIO LH-EHR version REL-2.0.0 contains an Authenticated Unrestricted File Write vulnerability in Import template that can result in write files with malicious content and may lead to remote code execution.

Vendors
librehealth
Products
librehealth ehr
Weakness
CWE-434
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.