FAIL › dossier
mirth connect
PRODUCT· dossier confidence 50%
Mirth Connect, a popular healthcare integration engine, has experienced multiple critical remote code execution vulnerabilities, raising concerns about its security posture and potential for exploitation. These vulnerabilities have been linked to ransomware attacks, highlighting the need for improved security practices. The company is implementing security awareness training and process improvements to address these issues.
PROFILE
CategoryHealthcare ITWhat they doMirth Connect is a widely used integration engine for healthcare organizations. It facilitates the exchange of data between disparate systems and applications.
SECURITY POSTURE
Mirth Connect has demonstrated a history of critical remote code execution vulnerabilities, linked to ransomware attacks. Remediation efforts include security awareness training and improved security posture and processes.
Notable failures
- CVE-2023-43208 (RCE, ransomware linked)
- CVE-2023-37679 (RCE)
Patterns: Unauthenticated remote code execution; Deserialization vulnerabilities
FAILURE HISTORY · 2
| DATE | EVENT | SEV | SUMMARY |
|---|---|---|---|
| 2024-05-20 | CVE-2023-43208 | critical | NextGen Healthcare's Mirth Connect suffered a critical deserialization vulnerability allowing unauthenticated remote code execution, linked to ransomware attacks. |
| 2023-08-03 | CVE-2023-37679 | critical | A remote command execution (RCE) vulnerability in NextGen Mirth Connect v4.3.0 allows attackers to execute arbitrary commands on the hosting server. |
Open questions: What is the current ownership structure? · What is the current employee count? · What is the current version in use by DIB clients?
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-04 04:11:12.706557+00:00