References https://www.cve.org/CVERecord?id=CVE-2025-4499 https://vuldb.com/vuln/308215 https://www.tenable.com/cve/CVE-2025-4499 https://cert.kenet.or.ke/cve-2025-4499-simple-hospital-management-system-buffer-overflow https://nvd.nist.gov/vuln/detail/CVE-2025-4499 https://cve.imfht.com/detail/CVE-2025-4499 https://access.redhat.com/security/cve/cve-2025-4499 https://devhub.checkmarx.com/cve-details/cve-2025-4499/ https://vulners.com/cve/CVE-2025-4499 https://www.incibe.es/en/incibe-cert/early-warning/vulnerabilities/cve-2025-4499
Related VulnerabilitiesPoCCVE-2026-48558: SimpleHelp <=5.5.15 - OIDC JWT Authentication Bypass中成科信票务管理系统 /SystemManager/TicketSystem/ReturnTicketPlance.ashx SQL 注入漏洞中成科信票务管理系统 /SystemManager/Planetarium/ReserveTicketManagerPlane.ashx SQL 注入漏洞PoCCVE-2026-11801: WPAdverts <= 2.3.2 - Information DisclosurePoCCVE-2026-3576: Planyo Online Reservation System <= 3.0 - Arbitrary File ReadPoCCVE-2026-57219: RabbitMQ Management - OAuth 2 Client Secret DisclosurePoCCVE-2024-57726: SimpleHelp <= 5.5.7 - Privilege EscalationPoCsimple-file-list-rce: WordPress Simple File List <=4.2.2 - Remote Code ExecutionPoCCVE-2026-10768: Drupal LocalGov Workflows < 1.6.0 - Information DisclosurePoCCVE-2026-27796: Homarr < 1.54.0 - Information Disclosure深信服运维安全管理系统 /fort/system/safeCert;help/upload_safe_cert 命令执行漏洞PoCCVE-2026-1980: WPBookit <= 1.0.8 - Unauthenticated Customer Information DisclosurePoCCVE-2026-8386: WP Go Maps < 10.0.10 - Unauthenticated Marker Information Disclosure