CVE-2023-43208

NextGen Healthcare Mirth Connect before version 4.4.1 is vulnerable to unauthenticated remote code execution. Note that this vulnerability is...

Basic Information

CVE State
PUBLISHED
Reserved Date
September 18, 2023
Published Date
October 26, 2023
Last Updated
February 26, 2025
Vendor
n/a
Product
n/a
Description
NextGen Healthcare Mirth Connect before version 4.4.1 is vulnerable to unauthenticated remote code execution. Note that this vulnerability is caused by the incomplete patch of CVE-2023-37679.

CVSS Scores

CVSS v3.1

9.8 - CRITICAL

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

SSVC Information

Exploitation
active
Automatable
Yes
Technical Impact
total

Exploit Status

Exploited in the Wild
Yes (added 2024-05-20 00:00:00 UTC) Source
Proof of Concept Available
Yes (added 2024-11-28 09:03:23 UTC) Source

Known Exploited Vulnerability Information

Source Added Date
CISA 2024-05-20 00:00:00 UTC

Potential Proof of Concepts

Warning: These PoCs have not been tested and could contain malware. Use at your own risk.

mirth_connect_cve_2023_43208

Type: metasploit • Created: Unknown

Metasploit module for CVE-2023-43208

Avento/CVE-2023-43208_Detection_PoC

Type: github • Created: 2024-11-28 09:03:23 UTC • Stars: 2

Use java.net.InetAddress for detection

jakabakos/CVE-2023-43208-mirth-connect-rce-poc

Type: github • Created: 2024-03-17 08:44:14 UTC • Stars: 3

K3ysTr0K3R/CVE-2023-43208-EXPLOIT

Type: github • Created: 2024-03-15 12:03:51 UTC • Stars: 24

A PoC exploit for CVE-2023-43208 - Mirth Connect Remote Code Execution (RCE)