CNNVD-202509-064 Information

CNNVD ID

CNNVD-202509-064

CVE-2025-9775

  • CNNVD Published: 2025-09-01

Description (Chinese)

Saad Irfan RemoteClinic是Saad Irfan开源的一个应用程序。提供通过Web远程管理您的诊所功能。 Saad Irfan RemoteClinic 2.0及之前版本存在安全漏洞,该漏洞源于对文件/staff/edit-my-profile.php中参数image的错误操作导致无限制上传。

Description (English)

Saad Irfan RemoteClinic is an application that is open to Saad Irfan. Provides remote management of your clinic through Web. Saad Irfan RemoteClinic 2.0 and previous versions had a security loophole, which stemmed from an error in the way in which the parameter image in the document/staff/edit-my-profile.php resulted in unlimited uploading.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Saad Irfan

Published

2025-09-01

Last Modified

2026-02-24

References

https://vuldb.com/?submit.640955 https://vuldb.com/?id.322075 https://vuldb.com/?ctiid.322075 https://github.com/diy777/cve/issues/2 https://access.redhat.com/security/cve/cve-2025-9775 https://nvd.nist.gov/vuln/detail/CVE-2025-9775

Share on: