First published: Tue Jun 22 2021(Updated: )
PHPGurukul Hospital Management System in PHP v4.0 has a Persistent Cross-Site Scripting vulnerability in \hms\admin\appointment-history.php. Remote registered users can exploit the vulnerability to obtain user cookie data.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PHPGURUKUL Hospital Management System | =4.0 | |
PHPGurukul Hospital Management System in PHP | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-22167.
The severity of CVE-2020-22167 is medium.
The affected software is PHPGurukul Hospital Management System in PHP v4.0.
The impact of CVE-2020-22167 is a Persistent Cross-Site Scripting vulnerability.
Remote registered users can exploit the vulnerability to obtain user cookie data.