peter bassill · operator
$ cve CVE-2026-24849 JSON

CVE-2026-24849 EXPLOIT

9.9
CRITICAL · CVSS 3.1 · EPSS 2.2% (pctl 82)

Patch early

A public exploit exists.

Description

OpenEMR is a free and open source electronic health records and medical practice management application. Prior to version 7.0.4, the `disposeDocument()` method in `EtherFaxActions.php` allows authenticated users to read arbitrary files from the server filesystem. Any authenticated user (regardless of privilege level) can exploit this vulnerability to read sensitive files. Version 7.0.4 patches the issue.

Scoring

CVSS9.9 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
EPSS2.2% — more likely to be exploited than 82% of all CVEs
WeaknessCWE-22
On CISA KEVno
Public exploityes
Published2026-02-25
Last modified2026-06-17

Affected (1)

VendorProduct
open-emropenemr

Public exploits

SourceTitleDate
exploit-dbOpenEMR 7.0.2 - Arbitrary File Read2026-06-08

References

→ the Explorer  ·  watch your stack  ·  NVD