Files
CVEs-PoC/2020/CVE-2020-23829.md
T
2024-05-25 21:48:12 +02:00

725 B

CVE-2020-23829

Description

interface/new/new_comprehensive_save.php in LibreHealth EHR 2.0.0 suffers from an authenticated file upload vulnerability, allowing remote attackers to achieve remote code execution (RCE) on the hosting webserver by uploading a maliciously crafted image.

POC

Reference

Github