Vulnerabilities
Vulnerable Software
Hospital management system version 378c157 allows to bypass authentication. This is possible because the application is vulnerable to SQLI.
CVSS Score
9.8
EPSS Score
0.0
Published
2023-09-28
Hospital management system version 378c157 allows to bypass authentication. This is possible because the application is vulnerable to SQLI.
CVSS Score
9.8
EPSS Score
0.0
Published
2023-09-28
An issue was discovered in Projectworlds Hospital Management System v1.0. Unauthorized malicious attackers can add patients without restriction via add_patient.php.
CVSS Score
5.3
EPSS Score
0.002
Published
2022-03-16
Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via the email parameter in hms-staff.php.
CVSS Score
9.8
EPSS Score
0.002
Published
2021-12-22
Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via multiple parameters in admin_home.php.
CVSS Score
9.8
EPSS Score
0.002
Published
2021-12-22
Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via multiple parameters in add_patient.php. As a result, an authenticated malicious user can compromise the databases system and in some cases leverage this vulnerability to get remote code execution on the remote web server.
CVSS Score
8.8
EPSS Score
0.014
Published
2021-12-22
Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via the appointment_no parameter in payment.php.
CVSS Score
9.8
EPSS Score
0.002
Published
2021-12-22


Contact Us

Shodan ® - All rights reserved