Access Control Vulnerability in Asseco ADMX System for Medical Record Processing
CVE-2025-4596
5.3MEDIUM
What is CVE-2025-4596?
The Asseco ADMX system, utilized for the management of medical records, is vulnerable due to improper access controls. This flaw permits authenticated users to manipulate GET request arguments containing document IDs, potentially granting them unauthorized access to other users' medical files. A patch addressing this vulnerability has been implemented in version 6.09.01.62 of the ADMX system to enhance security.
Affected Version(s)
AMDX 0 < 6.09.01.62
