CVE-2012-0992
interface/fax/fax_dispatch.php in OpenEMR 4.1.0 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the file parameter.
Date published : 2012-02-07
http://www.securityfocus.com/bid/51788
http://archives.neohapsis.com/archives/bugtraq/2012-02/0004.html