Show filters
131 Total Results
Displaying 81-90 of 131
Sort by:
Attacker Value
Unknown
CVE-2022-30011
Disclosure Date: May 16, 2022 (last updated February 23, 2025)
In HMS 1.0 when requesting appointment.php through POST, multiple parameters can lead to a SQL injection vulnerability.
0
Attacker Value
Unknown
CVE-2022-28929
Disclosure Date: May 15, 2022 (last updated February 23, 2025)
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the delid parameter at viewtreatmentrecord.php.
0
Attacker Value
Unknown
CVE-2022-30449
Disclosure Date: May 11, 2022 (last updated February 23, 2025)
Hospital Management System in PHP with Source Code (HMS) 1.0 was discovered to contain a SQL injection vulnerability via the editid parameter in room.php.
0
Attacker Value
Unknown
CVE-2022-30448
Disclosure Date: May 11, 2022 (last updated February 23, 2025)
Hospital Management System in PHP with Source Code (HMS) 1.0 was discovered to contain a File upload vulnerability in treatmentrecord.php.
0
Attacker Value
Unknown
CVE-2022-27420
Disclosure Date: May 04, 2022 (last updated February 23, 2025)
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the patient_contact parameter in patientsearch.php.
0
Attacker Value
Unknown
CVE-2022-27413
Disclosure Date: May 03, 2022 (last updated February 23, 2025)
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the adminname parameter in admin.php.
0
Attacker Value
Unknown
CVE-2022-27299
Disclosure Date: April 26, 2022 (last updated February 23, 2025)
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the component room.php.
0
Attacker Value
Unknown
CVE-2022-26546
Disclosure Date: March 31, 2022 (last updated February 23, 2025)
Hospital Management System v1.0 was discovered to lack an authorization component, allowing attackers to access sensitive information and obtain the admin password.
0
Attacker Value
Unknown
CVE-2022-24136
Disclosure Date: March 31, 2022 (last updated February 23, 2025)
Hospital Management System v1.0 is affected by an unrestricted upload of dangerous file type vulerability in treatmentrecord.php. To exploit, an attacker can upload any PHP file, and then execute it.
0
Attacker Value
Unknown
CVE-2021-45852
Disclosure Date: March 16, 2022 (last updated February 23, 2025)
An issue was discovered in Projectworlds Hospital Management System v1.0. Unauthorized malicious attackers can add patients without restriction via add_patient.php.
0