Arbitrary Command Execution in OpenEMR 4.1.0 via fax_dispatch.php

Arbitrary Command Execution in OpenEMR 4.1.0 via fax_dispatch.php

CVE-2012-0992 · HIGH Severity

AV:N/AC:M/AU:S/C:C/I:C/A:C

interface/fax/fax_dispatch.php in OpenEMR 4.1.0 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the file parameter.

Learn more about our User Device Pen Test.