Show filters
219 Total Results
Displaying 71-80 of 219
Sort by:
Attacker Value
Unknown

CVE-2023-1180

Disclosure Date: March 05, 2023 (last updated February 24, 2025)
A vulnerability has been found in SourceCodester Health Center Patient Record Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file hematology_print.php. The manipulation of the argument hem_id leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-222331.
Attacker Value
Unknown

CVE-2023-1156

Disclosure Date: March 02, 2023 (last updated February 24, 2025)
A vulnerability classified as problematic was found in SourceCodester Health Center Patient Record Management System 1.0. This vulnerability affects unknown code of the file admin/fecalysis_form.php. The manipulation of the argument itr_no leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-222220.
Attacker Value
Unknown

CVE-2022-27538

Disclosure Date: February 01, 2023 (last updated February 24, 2025)
A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in the BIOS for certain HP PC products which may allow arbitrary code execution, denial of service, and information disclosure. HP is releasing BIOS updates to mitigate the potential vulnerability.
Attacker Value
Unknown

CVE-2021-3439

Disclosure Date: February 01, 2023 (last updated October 08, 2023)
HP has identified a potential vulnerability in BIOS firmware of some Workstation products. Firmware updates are being released to mitigate these potential vulnerabilities.
Attacker Value
Unknown

CVE-2023-0440

Disclosure Date: January 23, 2023 (last updated February 24, 2025)
Observable Discrepancy in GitHub repository healthchecks/healthchecks prior to v2.6.
Attacker Value
Unknown

CVE-2022-46471

Disclosure Date: January 13, 2023 (last updated February 24, 2025)
Online Health Care System v1.0 was discovered to contain a SQL injection vulnerability via the consulting_id parameter at /healthcare/Admin/consulting_detail.php.
Attacker Value
Unknown

CVE-2015-10032

Disclosure Date: January 09, 2023 (last updated February 24, 2025)
A vulnerability was found in HealthMateWeb. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file createaccount.php. The manipulation of the argument username/password/first_name/last_name/company/phone leads to cross site scripting. The attack can be launched remotely. The patch is named 472776c25b1046ecaf962c46fed7c713c72c28e3. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217663.
Attacker Value
Unknown

CVE-2022-2887

Disclosure Date: September 16, 2022 (last updated February 24, 2025)
The WP Server Health Stats WordPress plugin before 1.7.0 does not escape some of its settings, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.
Attacker Value
Unknown

CVE-2021-3914

Disclosure Date: August 25, 2022 (last updated February 24, 2025)
It was found that the smallrye health metrics UI component did not properly sanitize some user inputs. An attacker could use this flaw to conduct cross-site scripting attacks.
Attacker Value
Unknown

CVE-2022-35218

Disclosure Date: July 29, 2022 (last updated February 24, 2025)
The NHI card’s web service component has a heap-based buffer overflow vulnerability due to insufficient validation for packet origin parameter length. A LAN attacker with general user privilege can exploit this vulnerability to disrupt service.