CVE-2025-30058 | CGM CLININET up to 2024.MS3 PatientService.pl getPatientIdentifier pesel sql injection
A vulnerability marked as critical has been reported in CGM CLININET up to 2024.MS3. Affected by this vulnerability is the function getPatientIdentifier of the file PatientService.pl. The manipulation of the argument pesel leads to sql injection.
This vulnerability is listed as CVE-2025-30058. The attack must be carried out from within the local network. There is no available exploit.
It is suggested to upgrade the affected component.