CVE-2007-0649 | OpenEMR login_frame.php rootdir code injection (EDB-29556 / BID-22346)
A vulnerability was found in OpenEMR. It has been declared as problematic. Affected is an unknown function of the file interface/login/login_frame.php. Such manipulation of the argument rootdir leads to code injection.
This vulnerability is listed as CVE-2007-0649. The attack may be performed from remote. In addition, an exploit is available.