PT-2019-9405 · Openemr · Openemr

Published

2019-05-17

·

Updated

2019-05-20

·

CVE-2018-17180

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions OpenEMR versions prior to 5.0.1 Patch 7
Description An issue exists where Directory Traversal is possible, allowing access to files outside the intended directory. This is achieved by manipulating the docid parameter with a value such as ../ in the /portal/lib/download template.php endpoint.
Recommendations For versions prior to 5.0.1 Patch 7, update to version 5.0.1 Patch 7 or later to resolve the issue. As a temporary workaround, consider restricting access to the /portal/lib/download template.php endpoint to minimize the risk of exploitation. Avoid using the docid parameter with values that could facilitate directory traversal until the issue is resolved.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-17180

Affected Products

Openemr