NextGen Mirth Connect < 4.4.0 RCE (CVE-2023-37679)

critical Nessus Plugin ID 183968

Version 1.2

Jan 31, 2024, 2:58 PM

  • Exploit attributes ("Exploit framework metasploit" set to "True")
  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:F/RL:OF/RC:C". "CVSSv3 temporal vector" set to "CVSS:3.0/E:F/RL:O/RC:C")

Plugin Feed: 202401311458

Version 1.1

Oct 30, 2023, 4:49 PM

  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:POC/RL:OF/RC:C". "CVSSv3 temporal vector" set to "CVSS:3.0/E:P/RL:O/RC:C")
  • Exploit attributes ("Exploit available" set to "True". "Exploitability ease" set to "Exploits are available")

Plugin Feed: 202310301649

Version 1.0

Oct 27, 2023, 4:19 PM

  • New

Plugin Feed: 202310271619

Version 1.0

Oct 30, 2023, 2:59 PM

  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:POC/RL:OF/RC:C")
  • CVSS temporal metrics ("CVSSv3 temporal vector" set to "CVSS:3.0/E:P/RL:O/RC:C")
  • Exploit attributes ("Exploit available" set to "True")
  • Exploit attributes ("Exploitability ease" set to "Exploits are available")

Plugin Feed: 202310301459

* Changelogs are generally available for changes made after Nov 1, 2022