Show filters
43 Total Results
Displaying 31-40 of 43
Sort by:
Attacker Value
Unknown
CVE-2021-27315
Disclosure Date: March 24, 2021 (last updated February 22, 2025)
Blind SQL injection in contactus.php in Doctor Appointment System 1.0 allows an unauthenticated attacker to insert malicious SQL queries via the comment parameter.
0
Attacker Value
Unknown
CVE-2021-27316
Disclosure Date: March 24, 2021 (last updated February 22, 2025)
Blind SQL injection in contactus.php in doctor appointment system 1.0 allows an unauthenticated attacker to insert malicious SQL queries via lastname parameter.
0
Attacker Value
Unknown
CVE-2021-27314
Disclosure Date: March 05, 2021 (last updated February 22, 2025)
SQL injection in admin.php in doctor appointment system 1.0 allows an unauthenticated attacker to insert malicious SQL queries via username parameter at login page.
0
Attacker Value
Unknown
CVE-2021-27317
Disclosure Date: March 01, 2021 (last updated February 22, 2025)
Cross Site Scripting (XSS) vulnerability in contactus.php in Doctor Appointment System 1.0 allows remote attackers to inject arbitrary web script or HTML via the comment parameter.
0
Attacker Value
Unknown
CVE-2021-27318
Disclosure Date: March 01, 2021 (last updated February 22, 2025)
Cross Site Scripting (XSS) vulnerability in contactus.php in Doctor Appointment System 1.0 allows remote attackers to inject arbitrary web script or HTML via the lastname parameter.
0
Attacker Value
Unknown
CVE-2021-27124
Disclosure Date: February 18, 2021 (last updated February 22, 2025)
SQL injection in the expertise parameter in search_result.php in Doctor Appointment System v1.0 allows an authenticated patient user to dump the database credentials via a SQL injection attack.
0
Attacker Value
Unknown
CVE-2020-29283
Disclosure Date: December 02, 2020 (last updated February 22, 2025)
An SQL injection vulnerability was discovered in Online Doctor Appointment Booking System PHP and Mysql via the q parameter to getuser.php.
0
Attacker Value
Unknown
CVE-2019-12280
Disclosure Date: June 25, 2019 (last updated November 27, 2024)
PC-Doctor Toolbox before 7.3 has an Uncontrolled Search Path Element.
0
Attacker Value
Unknown
CVE-2018-18385
Disclosure Date: October 16, 2018 (last updated November 27, 2024)
Asciidoctor in versions < 1.5.8 allows remote attackers to cause a denial of service (infinite loop). The loop was caused by the fact that Parser.next_block was not exhausting all the lines in the reader as the while loop expected it would. This was happening because the regular expression that detects any list was not agreeing with the regular expression that detects a specific list type. So the line kept getting pushed back onto the reader, hence causing the loop.
0
Attacker Value
Unknown
CVE-2018-6655
Disclosure Date: February 07, 2018 (last updated November 26, 2024)
PHP Scripts Mall Doctor Search Script 1.0.2 has Stored XSS via an arbitrary profile field.
0