Data Exposure Vulnerability in CliniNET by CliniTech
CVE-2025-30041

9CRITICAL

Key Information:

Vendor

Cgm

Vendor
CVE Published:
27 August 2025

What is CVE-2025-30041?

The CliniNET product suite from CliniTech has a vulnerability that causes unintended exposure of sensitive user data. Specific scripts within the application reveal critical information, including session IDs, through publicly accessible paths. This vulnerability could potentially allow unauthorized access to user sessions, highlighting the need for immediate security assessments and remediation strategies.

Affected Version(s)

CGM CLININET 0 < 2025.MS1

References

CVSS V4

Score:
9
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Maciej Kazulak
.
CVE-2025-30041 : Data Exposure Vulnerability in CliniNET by CliniTech