Impact
The vulnerability allows an attacker to insert arbitrary operating‑system commands into the OCR module of R‑SOFT DMS. File paths supplied to command‑execution functions are forwarded unvalidated to the system shell via SSH, letting a payload be executed with the privileges of the root user. This flaw can be leveraged to run any code on the host system, potentially giving full control of the compromised instance.
Affected Systems
Vendors affected include R‑SOFT SERWIS:DMS. Versions released before v3.19‑2862 for the 3.19 line and before v3.17‑2580 for the 3.17 line contain the flaw; later releases contain the fix.
Risk and Exploitability
The CVSS score of 9 indicates critical severity. An EPSS value of 1% suggests a low but non‑zero probability of exploitation, and the flaw is not yet listed in the CISA KEV catalog. The attack requires authentication and the ability to trigger the OCR processing on an uploaded file, implying that insider or compromised user credentials can lead to successful exploitation.
OpenCVE Enrichment