nextgen kayıtları
nextgen üreticisine ait 2 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 1 · %50
- Silahlaştırılmış
- 2 · %100
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- 207 gün
Tekrar eden sınıflar
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
2 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
94Hemen | CVE-2023-43208Silahlaştırılmış | NextGen Healthcare Mirth Connect before version 4.4.1 is vulnerable to unauthenticated remote code execution.nextgen · mirth connect · CWE-78 | Kritik9,8 | KEV | %82,7 | 26 Eki 2023 |
69Bu hafta | CVE-2023-37679Silahlaştırılmış | A remote command execution (RCE) vulnerability in NextGen Mirth Connect v4.3.0 allows attackers to execute arbitrary commands on the hostingnextgen · mirth connect · CWE-77 | Kritik9,8 | — | %99,4 | 2 Ağu 2023 |
- CVE-2023-4320894Hemen
NextGen Healthcare Mirth Connect before version 4.4.1 is vulnerable to unauthenticated remote code execution.
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %83nextgen · mirth connect26 Eki 2023
- CVE-2023-3767969Bu hafta
A remote command execution (RCE) vulnerability in NextGen Mirth Connect v4.3.0 allows attackers to execute arbitrary commands on the hosting
KritikCVSS 9,8SilahlaştırılmışEPSS %99nextgen · mirth connect2 Ağu 2023