CVE-2023-43208

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Oct 26, 2023
Updated: Aug 14, 2024
CWE ID 78
CWE ID 502

Summary

CVE-2023-43208 is a new vulnerability affecting NextGen Healthcare Mirth Connect before version 4.4.1. This issue allows unauthenticated remote code execution, posing a significant risk to affected systems. Notably, this vulnerability stems from the incomplete patch of a previous issue, CVE-2023-37679. Unauthorized attackers can exploit this weakness to execute arbitrary code and potentially gain control over vulnerable servers, making it crucial for organizations using Mirth Connect to update to the latest version as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share