CNNVD-202509-067 Information

CNNVD ID

CNNVD-202509-067

CVE-2025-9772

  • CNNVD Published: 2025-09-01

Description (Chinese)

Saad Irfan RemoteClinic是Saad Irfan开源的一个应用程序。提供通过Web远程管理您的诊所功能。 Saad Irfan RemoteClinic 2.0及之前版本存在安全漏洞,该漏洞源于对文件/staff/edit.php中参数image的错误操作导致无限制上传。

Description (English)

Saad Irfan RemoteClinic is an application that is open to Saad Irfan. Provides remote management of your clinic through Web. Saad Irfan RemoteClinic 2.0 and previous versions had a security loophole, which resulted from an error of action on the parameter image in document/staff/edit.php, resulting in unlimited uploading.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Saad Irfan

Published

2025-09-01

Last Modified

2026-02-24

References

https://vuldb.com/?submit.640956 https://vuldb.com/?submit.640867 https://vuldb.com/?id.322072 https://vuldb.com/?ctiid.322072 https://github.com/lan041221/cvec/issues/18 https://nvd.nist.gov/vuln/detail/CVE-2025-9772 https://access.redhat.com/security/cve/cve-2025-9772

Share on: