Vulnerabilities
Vulnerable Software
Rickxy:  Security Vulnerabilities
The patient prescription viewing functionality in his_doc_view_single_patient.php of rickxy Hospital Management System version 1.0 contains an SQL injection vulnerability. The pat_number GET parameter is directly concatenated into SQL queries without proper sanitization, allowing authenticated attackers (doctor role) to execute arbitrary SQL queries.
CVSS Score
7.1
EPSS Score
0.0
Published
2025-11-10


Contact Us

Shodan ® - All rights reserved