Description
Chikitsa Patient Management System 2.0.2 contains an authenticated remote code execution vulnerability in the backup restoration functionality. Authenticated attackers can upload a modified backup zip file with a malicious PHP shell to execute arbitrary system commands on the server.
Problem types
Unrestricted Upload of File with Dangerous Type
Product status
Credits
0z09e
References
www.exploit-db.com/exploits/50572 (ExploitDB-50572)
www.chikitsa.io/ (Product Webpage)
github.com/sanskruti-technologies/chikitsa (Product GitHub Repository)
sourceforge.net/projects/chikitsa/ (Product Sourceforge Page)