CVE-2025-30044

In the endpoints "/cgi-bin/CliniNET.prd/utils/usrlogstat_simple.pl", "/cgi-bin/CliniNET.prd/utils/usrlogstat.pl", "/cgi-bin/CliniNET.prd/utils/userlogstat2.pl", and "/cgi-bin/CliniNET.prd/utils/dblogstat.pl", the parameters are not sufficiently normalized, which enables code injection.
CVSS

No CVSS.

Configurations

No configuration.

History

27 Apr 2026, 19:12

Type Values Removed Values Added
Summary
  • (es) En los endpoints '/cgi-bin/CliniNET.prd/utils/usrlogstat_simple.pl', '/cgi-bin/CliniNET.prd/utils/usrlogstat.pl', '/cgi-bin/CliniNET.prd/utils/userlogstat2.pl', y '/cgi-bin/CliniNET.prd/utils/dblogstat.pl', los parámetros no están suficientemente normalizados, lo que permite la inyección de código.

02 Mar 2026, 12:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-02 12:16

Updated : 2026-04-27 19:12


NVD link : CVE-2025-30044

Mitre link : CVE-2025-30044

CVE.ORG link : CVE-2025-30044


JSON object : View

Products Affected

No product.

CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')