Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-745r-657p-6h6w

Опубликовано: 07 нояб. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

A SQL injection vulnerability exists in the SourceCodester PQMS (Patient Queue Management System) 1.0 in the api_patient_schedule.php endpoint. The appointmentID parameter is not properly sanitized, allowing attackers to execute arbitrary SQL commands.

A SQL injection vulnerability exists in the SourceCodester PQMS (Patient Queue Management System) 1.0 in the api_patient_schedule.php endpoint. The appointmentID parameter is not properly sanitized, allowing attackers to execute arbitrary SQL commands.

EPSS

Процентиль: 10%
0.00036
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 6.5
nvd
3 месяца назад

A SQL injection vulnerability exists in the SourceCodester PQMS (Patient Queue Management System) 1.0 in the api_patient_schedule.php endpoint. The appointmentID parameter is not properly sanitized, allowing attackers to execute arbitrary SQL commands.

EPSS

Процентиль: 10%
0.00036
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-89