CVE-2020-22166: SQL Injection
Published Jun 22, 2021
·Updated
PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\forgot-password.php. Remote unauthenticated users can exploit the vulnerability to obtain database sensitive information.
Affected Software
2 affected components
Phpgurukul Hospital Management System in PHP=4.0
Phpgurukul Hospital Management System=4.0
Event History
Jun 22, 2021
CVE Published
via MITRE·02:13 PM
Data Sourced
via MITRE·02:13 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2020-22166.
2
What is the severity level of CVE-2020-22166?
The severity level of CVE-2020-22166 is high with a score of 7.5.
3
What is the affected software of CVE-2020-22166?
The affected software is PHPGurukul Hospital Management System in PHP v4.0.
4
What is the type of vulnerability in CVE-2020-22166?
The vulnerability in CVE-2020-22166 is a SQL injection vulnerability.
5
How can remote unauthenticated users exploit CVE-2020-22166?
Remote unauthenticated users can exploit CVE-2020-22166 to obtain database sensitive information.