PT-2026-26331 · Openemr · Openemr

Simecek

·

Publicado

2026-03-19

·

Atualizado

2026-03-23

·

CVE-2026-25928

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions OpenEMR versions prior to 8.0.0.2
Description OpenEMR is an electronic health records and medical practice management application. The DICOM zip/export feature does not properly sanitize user-supplied paths when creating zip files. This allows an attacker with DICOM upload/export permission to write files outside the intended directory, potentially including the web root. Successful exploitation could lead to arbitrary file write and potentially remote code execution if PHP or other executable files are written. The issue involves the use of a user-supplied destination or path component without sanitizing path traversal sequences, such as ../.
Recommendations Update to OpenEMR version 8.0.0.2 or later.

Exploit

Correção

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-25928
GHSA-RPPW-F689-6HRM

Produtos afetados

Openemr