Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4j62-mqj7-xp2q

Опубликовано: 23 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via multiple parameters in add_patient.php. As a result, an authenticated malicious user can compromise the databases system and in some cases leverage this vulnerability to get remote code execution on the remote web server.

Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via multiple parameters in add_patient.php. As a result, an authenticated malicious user can compromise the databases system and in some cases leverage this vulnerability to get remote code execution on the remote web server.

EPSS

Процентиль: 80%
0.01417
Низкий

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 8.8
nvd
около 4 лет назад

Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via multiple parameters in add_patient.php. As a result, an authenticated malicious user can compromise the databases system and in some cases leverage this vulnerability to get remote code execution on the remote web server.

EPSS

Процентиль: 80%
0.01417
Низкий

Дефекты

CWE-89