CNNVD-202508-3252 Information

CNNVD ID

CNNVD-202508-3252

CVE-2025-30056

  • CNNVD Published: 2025-08-27

Description (Chinese)

CGM CLININET是德国CGM公司的一款医院信息管理系统。 CGM CLININET存在代码注入漏洞,该漏洞源于RunCommand函数接受任意参数并传递给shell执行,可能导致执行任意代码。

Description (English)

CGM CLIINNET is a hospital information management system operated by the German company CGM. CGM CLININET has a code-infusion loophole, which stems from the fact that the RunCommand function accepts any parameters and transmits them to shell for execution, which may result in the enforcement of any code.

Hazard Level

Medium

Vulnerability Type

代码注入

Affected Vendor

CGM

Published

2025-08-27

Last Modified

2026-02-24

References

https://cert.pl/en/posts/2025/08/CVE-2025-2313/ https://nvd.nist.gov/vuln/detail/CVE-2025-30056

Share on: