Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-119680. PoCs published by LiquidWorm.
AI-analyzed exploit summary The exploit demonstrates a local file disclosure vulnerability in OpenMRS by leveraging a directory traversal attack via the 'url' parameter in the 'viewPortlet.htm' script. The provided URLs show how an attacker can access sensitive files like 'web.xml' and 'pom.xml' by traversing directories.
Description
OpenMRS 2.3 (1.11.4) - Local File Disclosure
Exploits (1)
The exploit demonstrates a local file disclosure vulnerability in OpenMRS by leveraging a directory traversal attack via the 'url' parameter in the 'viewPortlet.htm' script. The provided URLs show how an attacker can access sensitive files like 'web.xml' and 'pom.xml' by traversing directories.