CNNVD-202509-019 Information

CNNVD ID

CNNVD-202509-019

CVE-2025-9754

  • CNNVD Published: 2025-09-01

Description (Chinese)

CampCodes Online Hospital Management System是CampCodes公司的一个在线医院管理系统。 CampCodes Online Hospital Management System 1.0版本存在安全漏洞,该漏洞源于对文件/edit-profile.php中参数Username的错误操作导致跨站脚本。

Description (English)

CampCodes Online Management System is an online hospital management system of CampCodes. There is a security loophole in version 1.0 of CampCodes Online Popular Management System, which results from an error in the argument Username in file/edit-profile.php.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

CampCodes

Published

2025-09-01

Last Modified

2026-02-24

References

https://www.campcodes.com/ https://vuldb.com/?submit.640616 https://vuldb.com/?id.322055 https://vuldb.com/?ctiid.322055 https://github.com/Yashh-G/zero-day-research/blob/main/HMS_Stored_XSS_In_UserName_Field.pdf https://nvd.nist.gov/vuln/detail/CVE-2025-9754

Share on: