CVE-2022-28929: SQL Injection
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the delid parameter at viewtreatmentrecord.php.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for the Hospital Management System v1.0 SQL injection vulnerability?
The vulnerability ID for the Hospital Management System v1.0 SQL injection vulnerability is CVE-2022-28929.
What is the severity of CVE-2022-28929?
The severity of CVE-2022-28929 is critical with a CVSS score of 9.8.
How does the SQL injection vulnerability in Hospital Management System v1.0 occur?
The SQL injection vulnerability in Hospital Management System v1.0 occurs due to inadequate input validation and sanitization of the 'delid' parameter in the 'viewtreatmentrecord.php' file.
What is the affected software for CVE-2022-28929?
The affected software for CVE-2022-28929 is Hospital Management System v1.0.
Is there a fix available for the SQL injection vulnerability in Hospital Management System v1.0?
Yes, a fix for the SQL injection vulnerability in Hospital Management System v1.0 is available. It is recommended to update to the latest version or apply the provided patch.