cve/2018/CVE-2018-15141.md
2024-06-09 00:33:16 +00:00

952 B

CVE-2018-15141

Description

Directory traversal in portal/import_template.php in versions of OpenEMR before 5.0.1.4 allows a remote attacker authenticated in the patient portal to delete arbitrary files via the "docid" parameter when the mode is set to delete.

POC

Reference

Github

No PoCs found on GitHub currently.