A vulnerability, which was classified as critical, has been found in RemoteClinic up to 2.0. This affects an unknown part of the file /staff/edit.php. Performing manipulation of the argument image results in unrestricted upload. This vulnerability only affects products that are no longer supported by the maintainer.

This vulnerability is identified as CVE-2025-9772. The attack can be initiated remotely. Additionally, an exploit exists.