References https://nvd.nist.gov/vuln/detail/CVE-2025-3096 https://github.com/advisories/GHSA-x784-p7w9-pf32 https://vuldb.com/submit/402425 https://attackerkb.com/topics?page=14&q=CVE-2025-64407 https://cyberveille.esante.gouv.fr/alertes/sourcecodester-cve-2025-3096-2025-04-03 https://www.rapid7.com/blog/post/2025/05/22/metasploit-wrap-up-157/ https://sploitus.com/exploit?id=PACKETSTORM:212664 https://magikh0e.pl/exploits/2025/May/clinic_pms_sqli_to_rce.rb.txt
Related Vulnerabilities中成科信票务管理系统 /SystemManager/TicketSystem/ReturnTicketPlance.ashx SQL 注入漏洞中成科信票务管理系统 /SystemManager/Planetarium/ReserveTicketManagerPlane.ashx SQL 注入漏洞PoCCVE-2026-3576: Planyo Online Reservation System <= 3.0 - Arbitrary File ReadPoCCVE-2026-57219: RabbitMQ Management - OAuth 2 Client Secret Disclosure深信服运维安全管理系统 /fort/system/safeCert;help/upload_safe_cert 命令执行漏洞PoCzoneminder-system-log: ZoneMinder System Log - Detect用友U8cloud /u8cloud/extsystem/dst SQL 注入漏洞天锐绿盾审批系统 /trwfe/login.jsp/..;/thirdSystemConfig/findSingConfigPage.do SQL 注入漏洞关于U8cloud2.6-5.1sp版本extsystem.dst接口存在SQL注入漏洞的安全公告FOSSBilling /system/string_render 命令执行漏洞(CVE-2026-28496)Kubernetes Dashboard /api/v1/namespaces/kube-system/secrets/kubernetes-dashboard-certs 权限绕过漏洞(CVE-2018-18264)研華科技|Hospital Queuing Management - 存在2個漏洞FOGProject /fog/management/export.php 信息泄露漏洞(CVE-2025-58443)