Security Advisory
CVE-2019-3968
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
In OpenEMR 5.0.1 and earlier, an authenticated attacker can execute arbitrary commands on the host system via the Scanned Forms interface when creating a new form.