Known Vulnerabilities for Hospital Managment System by Hospital Managment System Project
Listed below are 6 of the newest known vulnerabilities associated with "Hospital Managment System" by "Hospital Managment System Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-30011 json | In HMS 1.0 when requesting appointment.php through POST, multiple parameters can lead to a SQL injection vulnerability. | 9.8 - CRITICAL | 2022-05-16 | 2023-11-02 |
| CVE-2022-26546 json | Hospital Management System v1.0 was discovered to lack an authorization component, allowing attackers to access sensitive inf... | 9.1 - CRITICAL | 2022-03-31 | 2022-05-12 |
| CVE-2022-25493 json | HMS v1.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via treatmentrecord.php. | 6.1 - MEDIUM | 2022-03-15 | 2022-05-12 |
| CVE-2022-25492 json | HMS v1.0 was discovered to contain a SQL injection vulnerability via the medicineid parameter in ajaxmedicine.php. | 9.8 - CRITICAL | 2022-03-15 | 2022-05-12 |
| CVE-2022-25491 json | HMS v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter in appointment.php. | 7.5 - HIGH | 2022-03-15 | 2022-05-12 |
| CVE-2022-25490 json | HMS v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter in department.php. | 9.8 - CRITICAL | 2022-03-15 | 2022-05-12 |