CVE-2012-0992: Openemr

High severity, CVSS 8.5. EPSS: 3.7% chance of exploitation in the next 30 days.

interface/fax/fax_dispatch.php in OpenEMR 4.1.0 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the file parameter.

Affected products

  • Openemr Openemr: version 4.1.0 only

Published 2012-02-07. Last modified 2026-06-16.