The vulnerability allows unauthenticated users to download a file containing session ID data by directly accessing the "/cgi-bin/CliniNET.prd/utils/userlogxls.pl" endpoint.
Publication date: Wed, 27 Aug 2025 10:21:00 +0000
Cyber News related to CVE-2025-30040
CVE-2025-30040 - The vulnerability allows unauthenticated users to download a file containing session ID data by directly accessing the "/cgi-bin/CliniNET.prd/utils/userlogxls.pl" endpoint. ...
1 month ago
CVE-2022-30040 - Tenda AX1803 v1.0.0.1_2890 is vulnerable to Buffer Overflow. The vulnerability lies in rootfs_ In / goform / setsystimecfg of / bin / tdhttpd in ubif file system, attackers can access http://ip/goform/SetSysTimeCfg, and by setting the ntpserve ...
3 years ago
CVE-2024-30040 - Windows MSHTML Platform Security Feature Bypass Vulnerability ...
7 months ago