Critical severity9.8NVD Advisory· Published Aug 3, 2023· Updated Jul 9, 2026
CVE-2023-37679
CVE-2023-37679
Description
A remote command execution (RCE) vulnerability in NextGen Mirth Connect v4.3.0 allows attackers to execute arbitrary commands on the hosting server.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:nextgen:mirth_connect:4.3.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:nextgen:mirth_connect:4.3.0:*:*:*:*:*:*:*
- (no CPE)range: = 4.3.0
- NextGen/Mirth Connectdescription
Patches
Vulnerability mechanics
References
2- www.ihteam.net/advisory/mirth-connectnvdExploitThird Party Advisory
- packetstormsecurity.com/files/176920/Mirth-Connect-4.4.0-Remote-Command-Execution.htmlnvd
News mentions
1- China-Linked Hackers Deploy New StormEncryptor Ransomware, Likely via N-central FlawThe Hacker News · Aug 10, 2026