Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-35032

Опубликовано: 29 сент. 2025
Источник: nvd
CVSS3: 3.4
CVSS3: 9.9
EPSS Низкий

Описание

Medical Informatics Engineering Enterprise Health allows authenticated users to upload arbitrary files. The impact of this behavior depends on how files are accessed. This issue is fixed as of 2025-04-08.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:mieweb:enterprise_health:rc202303:*:*:*:*:*:*:*
cpe:2.3:a:mieweb:enterprise_health:rc202309:*:*:*:*:*:*:*
cpe:2.3:a:mieweb:enterprise_health:rc202403:*:*:*:*:*:*:*
cpe:2.3:a:mieweb:enterprise_health:rc202409:*:*:*:*:*:*:*
cpe:2.3:a:mieweb:enterprise_health:rc202503:*:*:*:*:*:*:*

EPSS

Процентиль: 12%
0.00039
Низкий

3.4 Low

CVSS3

9.9 Critical

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 3.4
github
4 месяца назад

Medical Informatics Engineering Enterprise Health allows authenticated users to upload arbitrary files. The impact of this behavior depends on how files are accessed. This issue is fixed as of 2025-04-08.

EPSS

Процентиль: 12%
0.00039
Низкий

3.4 Low

CVSS3

9.9 Critical

CVSS3

Дефекты

CWE-434