First published: Fri Nov 05 2021(Updated: )
Multiple Cross Site Scripting (XSS) vulnerabilities exist in PHPGurukul Hospital Management System 4.0 via the (1) searchdata parameter in (a) doctor/search.php and (b) admin/patient-search.php, and the (2) fromdate and (3) todate parameters in admin/betweendates-detailsreports.php.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hospital Management System Project Hospital Management System | =4.0 | |
PHPGURUKUL Hospital Management System | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-39411 is a vulnerability in PHPGurukul Hospital Management System 4.0 that allows for multiple Cross Site Scripting (XSS) attacks.
CVE-2021-39411 affects PHPGurukul Hospital Management System 4.0 by introducing multiple Cross Site Scripting (XSS) vulnerabilities.
CVE-2021-39411 has a severity rating of medium with a CVSS score of 6.1.
Cross Site Scripting (XSS) is a type of security vulnerability that allows attackers to inject malicious scripts into web pages viewed by other users.
To fix the CVE-2021-39411 vulnerability, it is recommended to update PHPGurukul Hospital Management System to a patched version or apply the necessary security patches provided by the vendor.