CVE-2018-15139 | OpenEMR up to 5.0.1.3 File Upload manage_site_files.php unrestricted upload (ID 163110 / EDB-49998)
A vulnerability was found in OpenEMR up to 5.0.1.3. It has been classified as critical. This affects an unknown part of the file interface/super/manage_site_files.php of the component File Upload. The manipulation leads to unrestricted upload.
This vulnerability is uniquely identified as CVE-2018-15139. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.