CVE-2022-24646: SQL Injection
Hospital Management System v4.0 was discovered to contain a SQL injection vulnerability in /Hospital-Management-System-master/contact.php via the txtMsg parameters.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-24646?
The severity of CVE-2022-24646 is high with a CVSS score of 7.5.
What is the affected software version of CVE-2022-24646?
CVE-2022-24646 affects Hospital Management System v4.0.
How does CVE-2022-24646 impact the application?
CVE-2022-24646 is a SQL injection vulnerability that can be exploited through the 'txtMsg' parameter of the contact.php file, allowing an attacker to execute malicious SQL queries and gain unauthorized access to the database.
Is there a fix available for CVE-2022-24646?
At the moment, there is no official fix available for CVE-2022-24646. It is recommended to apply security patches or updates provided by the vendor once they become available.
Where can I find more information about CVE-2022-24646?
You can find more information about CVE-2022-24646 on the following references: [link1], [link2], [link3].