CVSS
No CVSS.
T
he CGM CLININET system provides smart card authentication; however, authentication is conducted locally on the client device, and, in reality, only the certificate number is used for access verification. As a result, possession of the certificate number alone is sufficient for authentication, regardless of the actual presence of the smart card or ownership of the private key.
References
Configurations
No configuration.
History
02 Mar 2026, 12:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-03-02 12:16
Updated : 2026-03-02 20:29
NVD link : CVE-2025-30042
Mitre link : CVE-2025-30042
CVE.ORG link : CVE-2025-30042
JSON object : View
Products Affected
No product.
CWE
CWE-603
Use of Client-Side Authentication