CVE-2025-6664: CodeAstro Patient Record Management System cross-site request forgery
A vulnerability, which was classified as problematic, was found in CodeAstro Patient Record Management System 1.0. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6664?
CVE-2025-6664 is classified as problematic due to its potential impact on user security and privacy.
What type of vulnerability is CVE-2025-6664?
CVE-2025-6664 is a cross-site request forgery (CSRF) vulnerability.
How can I determine if I am affected by CVE-2025-6664?
If you are using CodeAstro Patient Record Management System version 1.0, you are potentially affected by CVE-2025-6664.
How do I fix CVE-2025-6664?
To fix CVE-2025-6664, implement anti-CSRF tokens in your web forms to prevent unauthorized requests.
Can CVE-2025-6664 be exploited remotely?
Yes, CVE-2025-6664 can be exploited remotely, allowing attackers to perform unauthorized actions on behalf of users.