Security Advisory

CVE-2025-11609

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-10-11 17:32:05
Last updated 2026-02-24 06:59:37
Assigner VulDB
CVSS score 6.3
State PUBLISHED

Description

A flaw has been found in code-projects Hospital Management System 1.0. Affected is the function session of the component express-session. This manipulation of the argument secret with the input secret causes use of hard-coded cryptographic key . The attack can be initiated remotely. The attack is considered to have high complexity. The exploitability is told to be difficult. The exploit has been published and may be used.