跳转到帖子

Mirth Connect Deserialization RCE

recommended_posts

发布于
  • Members

Mirth Connect Deserialization RCE

Disclosed
10/25/2023
Created
01/30/2024

Description

A vulnerability exists within Mirth Connect due to its mishandling of deserialized data. This vulnerability can be leveraged by an attacker using a crafted HTTP request to execute OS commands within the context of the target application. The original vulnerability was identified by IHTeam and assigned CVE-2023-37679. Later, researchers from Horizon3.ai determined the patch to be incomplete and published a gadget chain which bypassed the deny list that the original had implemented. This second vulnerability was assigned CVE-2023-43208 and was patched in Mirth Connect version 4.4.1. This module has been tested on versions 4.1.1, 4.3.0 and 4.4.0.

Author(s)

  • r00t
  • Naveen Sunkavally
  • Spencer McIntyre

Platform

Linux,Unix,Windows

Architectures

cmd

Development

  • Source Code
  • History
  • 查看数 706
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。
注意:你的帖子需要版主批准后才能看到。

游客
回帖…