CVE-2025-3096: Clinics Patient Management System SQL Injection
Published Apr 1, 2025
·Updated
Clinic’s Patient Management System versions 2.0 suffers from a SQL injection vulnerability in the login page.
Affected Software
1 affected component
Clinic Patient Management System=2.0
Event History
Apr 1, 2025
CVE Published
via MITRE·06:24 PM
Data Sourced
via MITRE·06:24 PM
DescriptionWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-3096?
CVE-2025-3096 is categorized as a high severity SQL injection vulnerability.
2
How do I fix CVE-2025-3096?
To fix CVE-2025-3096, update the Clinic Patient Management System to a version that has patched the SQL injection issue.
3
What impact does CVE-2025-3096 have on the system?
CVE-2025-3096 allows attackers to execute arbitrary SQL commands, potentially compromising user data.
4
Who is affected by CVE-2025-3096?
CVE-2025-3096 affects users of the Clinic Patient Management System version 2.0.
5
Is CVE-2025-3096 exploitable remotely?
Yes, CVE-2025-3096 can be exploited remotely through the login page of the application.