Unauthenticated Session Takeover in CliniNET by CERT
CVE-2025-30039
9CRITICAL
What is CVE-2025-30039?
The vulnerability in CliniNET allows unauthorized users to access an endpoint that manages active user sessions. This critical flaw permits attackers to hijack user sessions, including those with administrative rights, resulting in a significant security risk. Organizations using CliniNET need to immediately assess their systems and implement appropriate security measures to mitigate this risk.
Affected Version(s)
CGM CLININET 0 < 2024.MS4