CVE-2021-35388: XSS
Published Oct 28, 2022
·Updated
Hospital Management System v 4.0 is vulnerable to Cross Site Scripting (XSS) via /hospital/hms/admin/patient-search.php.
Affected Software
2 affected components
Hospital Management System Project Hospital Management System=4.0
Phpgurukul Hospital Management System=4.0
Event History
Oct 28, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-35388.
2
What is the severity of CVE-2021-35388?
The severity of CVE-2021-35388 is medium with a CVSS score of 5.4.
3
How does the Cross Site Scripting (XSS) vulnerability occur in Hospital Management System v 4.0?
The Cross Site Scripting (XSS) vulnerability occurs in Hospital Management System v 4.0 through the /hospital/hms/admin/patient-search.php page.
4
What is the affected software version?
The affected software version is Hospital Management System v 4.0.
5
Is there a fix available for CVE-2021-35388?
At the moment, there is no known fix available for CVE-2021-35388. It is recommended to follow best security practices and consider upgrading to a patched version when it becomes available.