Medical Practice Management System developed by Le-yan has a Remote Code Execution vulnerability. Unauthenticated remote attackers can execute arbitrary OS commamnds via a crafted HTML page.
High CVSS 8.8
Summary
Medical Practice Management System developed by Le-yan has a Remote Code Execution vulnerability. Unauthenticated remote attackers can execute arbitrary OS commamnds via a crafted HTML page.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://www.twcert.org.tw/en/cp-139-11128-8bd30-2.html
- https://www.twcert.org.tw/tw/cp-132-11127-cda76-1.html
Timeline
- nvd_ingest NVD