Show filters
131 Total Results
Displaying 121-130 of 131
Sort by:
Attacker Value
Unknown

CVE-2020-22176

Disclosure Date: June 22, 2021 (last updated February 22, 2025)
PHPGurukul Hospital Management System in PHP v4.0 has a sensitive information disclosure vulnerability in multiple areas. Remote unauthenticated users can exploit the vulnerability to obtain user sensitive information.
Attacker Value
Unknown

CVE-2020-22165

Disclosure Date: June 22, 2021 (last updated February 22, 2025)
PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\user-login.php. Remote unauthenticated users can exploit the vulnerability to obtain database sensitive information.
Attacker Value
Unknown

CVE-2020-22173

Disclosure Date: June 22, 2021 (last updated February 22, 2025)
PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\edit-profile.php. Remote unauthenticated users can exploit the vulnerability to obtain database sensitive information.
Attacker Value
Unknown

CVE-2020-35745

Disclosure Date: January 07, 2021 (last updated February 22, 2025)
PHPGURUKUL Hospital Management System V 4.0 does not properly restrict access to admin/dashboard.php, which allows attackers to access all data of users, doctors, patients, change admin password, get appointment history and access all session logs.
Attacker Value
Unknown

CVE-2020-25271

Disclosure Date: October 08, 2020 (last updated February 22, 2025)
PHPGurukul hospital-management-system-in-php 4.0 allows XSS via admin/patient-search.php, doctor/search.php, book-appointment.php, doctor/appointment-history.php, or admin/appointment-history.php.
Attacker Value
Unknown

CVE-2020-5193

Disclosure Date: January 14, 2020 (last updated February 21, 2025)
PHPGurukul Hospital Management System in PHP v4.0 suffers from multiple reflected XSS vulnerabilities via the searchdata or Doctorspecialization parameter.
Attacker Value
Unknown

CVE-2020-5192

Disclosure Date: January 06, 2020 (last updated February 21, 2025)
PHPGurukul Hospital Management System in PHP v4.0 suffers from multiple SQL injection vulnerabilities: multiple pages and parameters are not validating user input, and allow for the application's database and information to be fully compromised.
Attacker Value
Unknown

CVE-2020-5191

Disclosure Date: January 06, 2020 (last updated February 21, 2025)
PHPGurukul Hospital Management System in PHP v4.0 suffers from multiple Persistent XSS vulnerabilities.
Attacker Value
Unknown

CVE-2018-17393

Disclosure Date: June 19, 2019 (last updated November 27, 2024)
SQL Injection exists in HealthNode Hospital Management System 1.0 via the id parameter to dashboard/Patient/info.php or dashboard/Patient/patientdetails.php.
0
Attacker Value
Unknown

CVE-2018-18705

Disclosure Date: October 29, 2018 (last updated November 27, 2024)
PhpTpoint hospital management system suffers from multiple SQL injection vulnerabilities via the index.php user parameter associated with LOGIN.php, or the rno parameter to ALIST.php, DUNDEL.php, PDEL.php, or PUNDEL.php.
0