CNNVD-202601-1472 Information

CNNVD ID

CNNVD-202601-1472

CVE-2025-8306

  • CNNVD Published: 2026-01-08

Description (Chinese)

Asseco InfoMedica是波兰Asseco公司的一款综合性医疗信息管理系统。 Asseco InfoMedica 4.50.1版本和5.38.0版本之前版本存在安全漏洞,该漏洞源于访问控制粒度不足,可能导致获取其他账户编码密码。

Description (English)

Asseco InfoMedica is a comprehensive medical information management system of the Polish company Asseco. There was a security gap in the previous versions of Asseco InfoMedica 4.501 and 5.38.0, which stemmed from the lack of access control particles, which could lead to the acquisition of codes for other account codes.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

Asseco

Published

2026-01-08

Last Modified

2026-02-24

References

https://cert.pl/en/posts/2026/01/CVE-2025-8306/

Patch

https://asseco.com/

Share on: