PT-2025-32296 · Unknown · Hospital Management System
CVE-2023-41527
·
Publicado
2025-08-07
·
Atualizado
2025-08-07
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Hospital Management System version 4
Description
The Hospital Management System is susceptible to a SQL injection issue through the
password2 parameter within the func.php file. This allows for potential unauthorized database access or modification.Recommendations
Sanitize or validate the
password2 parameter in the func.php file to prevent SQL injection attacks.Correção
SQL injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Hospital Management System