PT-2025-52667 · Unknown · Clincapture Edc

Xh4Vm

·

Published

2025-10-26

·

Updated

2026-01-05

·

CVE-2025-65270

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions ClinCapture EDC versions 2.2.3 and 3.0
Description A reflected cross-site scripting (XSS) issue exists that allows a remote attacker to execute JavaScript code within a user's browser. The attacker does not need to be authenticated to exploit this issue.
Recommendations Update ClinCapture EDC to a version that addresses this issue.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

BDU:2025-13403
CVE-2025-65270

Affected Products

Clincapture Edc