Hospital Management System Project ≫ Hospital Management System
45 Schwachstellen gefunden.
CVE-2023-3809
- EPSS 0.05%
- Veröffentlicht 21.07.2023 04:15:15
- Zuletzt bearbeitet 21.11.2024 08:18:07
A vulnerability was found in Hospital Management System 1.0. It has been classified as critical. This affects an unknown part of the file patient.php. The manipulation of the argument address leads to sql injection. It is possible to initiate the att...
CVE-2023-3808
- EPSS 0.05%
- Veröffentlicht 21.07.2023 03:15:10
- Zuletzt bearbeitet 21.11.2024 08:18:06
A vulnerability was found in Hospital Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file patientforgotpassword.php. The manipulation leads to sql injection. The attack may be launched re...
CVE-2023-34651
- EPSS 0.31%
- Veröffentlicht 28.06.2023 21:15:10
- Zuletzt bearbeitet 21.11.2024 08:07:29
PHPgurukl Hospital Management System v.1.0 is vulnerable to Cross Site Scripting (XSS).
CVE-2022-48120
- EPSS 0.34%
- Veröffentlicht 20.01.2023 19:15:17
- Zuletzt bearbeitet 03.04.2025 16:15:30
SQL Injection vulnerability in kishan0725 Hospital Management System thru commit 4770d740f2512693ef8fd9aa10a8d17f79fad9bd (on March 13, 2021), allows attackers to execute arbitrary commands via the contact and doctor parameters to /search.php.
CVE-2022-46093
- EPSS 0.3%
- Veröffentlicht 13.01.2023 22:15:14
- Zuletzt bearbeitet 07.04.2025 20:15:18
Hospital Management System v1.0 is vulnerable to SQL Injection. Attackers can gain administrator privileges without the need for a password.
CVE-2022-38637
- EPSS 39.22%
- Veröffentlicht 13.09.2022 21:15:09
- Zuletzt bearbeitet 21.11.2024 07:16:50
Hospital Management System v1.0 was discovered to contain multiple SQL injection vulnerabilities via the Username and Password parameters on the Login page.
CVE-2022-34590
- EPSS 4.19%
- Veröffentlicht 20.07.2022 21:15:08
- Zuletzt bearbeitet 21.11.2024 07:09:48
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter in /HMS/admin.php.
CVE-2022-32095
- EPSS 0.22%
- Veröffentlicht 01.07.2022 21:15:08
- Zuletzt bearbeitet 21.11.2024 07:05:46
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter at orders.php.
CVE-2022-32094
- EPSS 26.81%
- Veröffentlicht 01.07.2022 21:15:08
- Zuletzt bearbeitet 21.11.2024 07:05:46
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the loginid parameter at doctorlogin.php.
CVE-2022-32093
- EPSS 0.22%
- Veröffentlicht 01.07.2022 21:15:08
- Zuletzt bearbeitet 21.11.2024 07:05:46
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the loginid parameter at adminlogin.php.