CVE-2023-43208
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Oct 26, 2023
Updated: Aug 14, 2024
CWE ID 78
CWE ID 502
Summary
CVE-2023-43208 is a new vulnerability affecting NextGen Healthcare Mirth Connect before version 4.4.1. This issue allows unauthenticated remote code execution, posing a significant risk to affected systems. Notably, this vulnerability stems from the incomplete patch of a previous issue, CVE-2023-37679. Unauthorized attackers can exploit this weakness to execute arbitrary code and potentially gain control over vulnerable servers, making it crucial for organizations using Mirth Connect to update to the latest version as soon as possible.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Mirth Connect
Affected Vendors
- NextGen