Vulnerability Details CVE-2025-35030
Medical Informatics Engineering Enterprise Health has a cross site request forgery vulnerability that allows an unauthenticated attacker to trick administrative users into clicking a crafted URL and perform actions on behalf of that administrative user. This issue is fixed as of 2025-04-08.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 5.4%
CVSS Severity
CVSS v3 Score 8.1
Products affected by CVE-2025-35030
-
cpe:2.3:a:mieweb:enterprise_health:rc202303
-
cpe:2.3:a:mieweb:enterprise_health:rc202309
-
cpe:2.3:a:mieweb:enterprise_health:rc202403
-
cpe:2.3:a:mieweb:enterprise_health:rc202409
-
cpe:2.3:a:mieweb:enterprise_health:rc202503