Description
A vulnerability was identified in gedelumbung HospitalManagement up to c2d45543789a3887067d3915f69d44cfc2cf76a8. Affected by this issue is the function app_user_login_model.php::cekUserLogin of the file application/models/app_user_login_model.php of the component KCFinder File Manager. Such manipulation of the argument ADMIN_RS_KCFINDER leads to unrestricted upload. It is possible to launch the attack remotely. The exploit is publicly available and might be used. This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available. The project was informed of the problem early through an issue report but has not responded yet.
Published: 2026-09-30
Score: 5.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Unrestricted File Upload
Action: Apply Patch
AI Analysis

Impact

The KCFinder File Manager component in gedelumbung HospitalManagement contains a flaw in the app_user_login_model.php::cekUserLogin function where the ADMIN_RS_KCFINDER argument is improperly validated, allowing an authenticated user to upload arbitrary files. This input validation weakness (CWE-434) combined with insufficient access control (CWE-284) can enable an attacker to upload and potentially execute malicious code from the web server, thereby compromising confidentiality, integrity, and availability. The vulnerability is exploitable remotely and public proof‑of‑concept code exists.

Affected Systems

The issue affects all instances of gedelumbung HospitalManagement up to commit c2d45543789a3887067d3915f69d44cfc2cf76a8, specifically the KCFinder File Manager in the application/models/app_user_login_model.php file. No formal version numbers are provided because the project uses a rolling release model, meaning every deployment prior to the patch commit is potentially vulnerable.

Risk and Exploitability

The CVSS score of 5.3 indicates moderate severity. The exploit probability metric (EPSS) is not available, and the vulnerability is not listed in the CISA KEV catalog. Nevertheless, the existence of a published exploit and the ability for attackers to trigger the flaw remotely via the web interface raise the likelihood that this vulnerability may be used in the wild. The risk is significant enough to warrant immediate attention, especially for environments that rely on KCFinder as a file manager.

Generated by OpenCVE AI on September 30, 2026 at 07:54 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update the HospitalManagement application to the latest commit that contains the fix for the cekUserLogin function or apply the specific patch that corrects the ADMIN_RS_KCFINDER validation.
  • If an update is not yet available, disable or remove the KCFinder component and eliminate the ADMIN_RS_KCFINDER dependency from the application.
  • Configure the web server to restrict the types of files that can be uploaded by the application, enforcing mime type checks and file extension whitelisting to mitigate the risk of arbitrary code upload.

Generated by OpenCVE AI on September 30, 2026 at 07:54 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 30 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 30 Sep 2026 00:45:00 +0000

Type Values Removed Values Added
Description A vulnerability was identified in gedelumbung HospitalManagement up to c2d45543789a3887067d3915f69d44cfc2cf76a8. Affected by this issue is the function app_user_login_model.php::cekUserLogin of the file application/models/app_user_login_model.php of the component KCFinder File Manager. Such manipulation of the argument ADMIN_RS_KCFINDER leads to unrestricted upload. It is possible to launch the attack remotely. The exploit is publicly available and might be used. This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available. The project was informed of the problem early through an issue report but has not responded yet.
Title gedelumbung HospitalManagement KCFinder File Manager app_user_login_model.php cekUserLogin unrestricted upload
First Time appeared Gedelumbung
Gedelumbung hospitalmanagement
Weaknesses CWE-284
CWE-434
CPEs cpe:2.3:a:gedelumbung:hospitalmanagement:*:*:*:*:*:*:*:*
Vendors & Products Gedelumbung
Gedelumbung hospitalmanagement
References
Metrics cvssV2_0

{'score': 6.5, 'vector': 'AV:N/AC:L/Au:S/C:P/I:P/A:P/E:POC/RL:ND/RC:C'}

cvssV3_0

{'score': 6.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:C'}

cvssV3_1

{'score': 6.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:C'}

cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}


Subscriptions

Gedelumbung Hospitalmanagement
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-09-30T13:56:03.229Z

Reserved: 2026-09-29T17:25:40.592Z

Link: CVE-2026-102842

cve-icon Vulnrichment

Updated: 2026-09-30T13:55:58.987Z

cve-icon NVD

Status : Deferred

Published: 2026-09-30T01:16:36.373

Modified: 2026-09-30T14:17:24.813

Link: CVE-2026-102842

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-30T08:00:07Z

Weaknesses
  • CWE-284

    Improper Access Control

  • CWE-434

    Unrestricted Upload of File with Dangerous Type