CVE-2025-9774

A vulnerability has been found in RemoteClinic up to 2.0. This issue affects some unknown processing of the file /patients/edit-patient.php. The manipulation of the argument Email leads to information disclosure. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
References
Link Resource
https://github.com/diy777/cve/issues/1 Not Applicable
https://vuldb.com/?ctiid.322074 Permissions Required VDB Entry
https://vuldb.com/?id.322074 Third Party Advisory VDB Entry
https://vuldb.com/?submit.640954 Not Applicable
https://github.com/diy777/cve/issues/1 Not Applicable
Configurations

Configuration 1 (hide)

cpe:2.3:a:remoteclinic:remote_clinic:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-09-01 11:15

Updated : 2025-09-04 16:16


NVD link : CVE-2025-9774

Mitre link : CVE-2025-9774

CVE.ORG link : CVE-2025-9774


JSON object : View

Products Affected

remoteclinic

  • remote_clinic
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

CWE-284

Improper Access Control

NVD-CWE-noinfo