CVE-2020-22168: SQL Injection
Published Jun 22, 2021
·Updated
PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\change-emaild.php. Remote unauthenticated users can exploit the vulnerability to obtain database sensitive information.
Affected Software
2 affected components
Phpgurukul Hospital Management System in PHP=4.0
Phpgurukul Hospital Management System=4.0
Event History
Jun 22, 2021
CVE Published
via MITRE·02:11 PM
Data Sourced
via MITRE·02:11 PM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for PHPGurukul Hospital Management System?
The vulnerability ID for PHPGurukul Hospital Management System is CVE-2020-22168.
2
What is the severity level of CVE-2020-22168?
The severity level of CVE-2020-22168 is high with a score of 7.5.
3
What is the affected software for CVE-2020-22168?
The affected software for CVE-2020-22168 is PHPGurukul Hospital Management System in PHP v4.0.
4
What is the CWE ID for CVE-2020-22168?
The CWE ID for CVE-2020-22168 is CWE-89.
5
How can remote unauthenticated users exploit CVE-2020-22168?
Remote unauthenticated users can exploit CVE-2020-22168 by using SQL injection to obtain sensitive information from the database.