CNNVD-202508-3607 Information

CNNVD ID

CNNVD-202508-3607

CVE-2025-8858

  • CNNVD Published: 2025-08-29

Description (Chinese)

Changing Clinic Image System是中国台湾全景(Changing)公司的一款管理和显示医学影像的计算机系统。 Changing Clinic Image System存在SQL注入漏洞,该漏洞源于容易受到SQL注入攻击,可能导致未经验证的远程攻击者注入任意SQL命令读取数据库内容。

Description (English)

Changing Clinic Image Systems is a computer system for managing and displaying medical images from Taiwan Panorama. There is an SQL-injecting loophole in Changing Clinical Image System, which stems from the vulnerability of SQL-injecting attacks, which could lead to uncertified remote attackers being injected into any SQL-ordered database.

Hazard Level

Medium

Vulnerability Type

SQL注入

Affected Vendor

全景

Published

2025-08-29

Last Modified

2026-02-24

References

https://www.twcert.org.tw/tw/cp-132-10362-c6021-1.html https://www.twcert.org.tw/en/cp-139-10363-601c9-2.html https://nvd.nist.gov/vuln/detail/CVE-2025-8858

Patch

https://www.changingtec.com/EN/cis.html#

Share on: