by @jakaba
23 Mar 2024

RCE in Mirth Connect - pt. I. (CVE-2023-37679)

by @jakaba
23 Mar 2024

RCE in Mirth Connect - pt. I. (CVE-2023-37679)

CVEs

9.8 Critical Severity

Apps

*.*
3.10.0.*
3.12.0.*
3.7.0.*
3.11.0.*
3.9.0.*
3.6.0.*
3.8.0.*
3.8.1.*
3.9.1.*

Screenshots from the blog posts

images/cltx0xxqz33yg1jk4h79b3wpr.jpgimages/cltx0xxqz33yg1jk4h79b3wpr.jpg

PoC video

Summary

Mirth Connect, developed by NextGen Healthcare, is an open-source data integration platform extensively utilized in the healthcare sector. It was found to be vulnerable to an unauthenticated remote code execution (RCE) vulnerability, identified as CVE-2023-37679, affecting versions before 4.4.0. This vulnerability could allow attackers to execute arbitrary code on the system without requiring authentication, posing a significant risk to healthcare data and operations.

Description

users/photos/clj8b3h1k16g10uoihwvzgsxi.png

@jakaba

70 posts

Total vcoins

61K

Social media links

Comments (0)