CVE-2021-35387: SQL Injection
Hospital Management System v 4.0 is vulnerable to SQL Injection via file:hospital/hms/admin/view-patient.php.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-35387?
CVE-2021-35387 is a vulnerability in Hospital Management System v 4.0 that allows for SQL Injection via the file hospital/hms/admin/view-patient.php.
What is the severity of CVE-2021-35387?
CVE-2021-35387 has a severity keyword of high and a severity value of 8.8.
How does CVE-2021-35387 affect Hospital Management System v 4.0?
CVE-2021-35387 affects Hospital Management System v 4.0 by allowing an attacker to perform SQL Injection through the file hospital/hms/admin/view-patient.php.
How can I fix CVE-2021-35387?
To fix CVE-2021-35387, you should update Hospital Management System to a version that is not vulnerable or apply patches provided by the vendor.
What is CWE-89?
CWE-89 is a category of vulnerability known as SQL Injection, which allows attackers to execute arbitrary SQL commands on a database.