Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2024-4294

Disclosure Date: April 27, 2024 (last updated April 28, 2024)
A vulnerability, which was classified as critical, has been found in PHPGurukul Doctor Appointment Management System 1.0. Affected by this issue is some unknown functionality of the file /doctor/view-appointment-detail.php. The manipulation of the argument editid leads to improper control of resource identifiers. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-262226 is the identifier assigned to this vulnerability.
0
Attacker Value
Unknown

CVE-2024-4293

Disclosure Date: April 27, 2024 (last updated April 28, 2024)
A vulnerability classified as problematic was found in PHPGurukul Doctor Appointment Management System 1.0. Affected by this vulnerability is an unknown functionality of the file appointment-bwdates-reports-details.php. The manipulation of the argument fromdate/todate leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-262225 was assigned to this vulnerability.
0
Attacker Value
Unknown

CVE-2022-46128

Disclosure Date: January 26, 2023 (last updated November 15, 2023)
phpgurukul Doctor Appointment Management System V 1.0.0 is vulnerable to Cross Site Scripting (XSS) via searchdata=.
Attacker Value
Unknown

CVE-2022-45730

Disclosure Date: January 26, 2023 (last updated November 15, 2023)
A cross-site scripting (XSS) vulnerability in Doctor Appointment Management System v1.0.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Search function.
Attacker Value
Unknown

CVE-2022-45729

Disclosure Date: January 12, 2023 (last updated November 15, 2023)
A cross-site scripting (XSS) vulnerability in Doctor Appointment Management System v1.0.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Employee ID parameter.
Attacker Value
Unknown

CVE-2022-45728

Disclosure Date: January 12, 2023 (last updated November 15, 2023)
Doctor Appointment Management System v1.0.0 was discovered to contain a cross-site scripting (XSS) vulnerability.