CVE-2021-47758
Chikitsa Patient Management System 2.0.2 contains an authenticated remote code execution vulnerability that allows attackers to upload malicious PHP plugins through the module upload functionality. Authenticated attackers can generate and upload a ZIP plugin with a PHP backdoor that enables arbitrary command execution on the server through a weaponized PHP script.
- Affected products
- Chikitsa Patient Management System
- Chikitsa Patient Management System
- = 2.0.2
- Fix
- Available
- CVSS 3.1
- 8.8 HIGH
- EPSS
- 0.9% (57th percentile)
- Weakness
- CWE-434
- NVD status
- Analyzed
- Published
- 2026-01-15
CVE-2021-47758 at NVD
No indexed exploits for CVE-2021-47758 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2021-47758 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.