First published: Sun May 15 2022(Updated: )
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the delid parameter at viewtreatmentrecord.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hospital Management System Project Hospital Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for the Hospital Management System v1.0 SQL injection vulnerability is CVE-2022-28929.
The severity of CVE-2022-28929 is critical with a CVSS score of 9.8.
The SQL injection vulnerability in Hospital Management System v1.0 occurs due to inadequate input validation and sanitization of the 'delid' parameter in the 'viewtreatmentrecord.php' file.
The affected software for CVE-2022-28929 is Hospital Management System v1.0.
Yes, a fix for the SQL injection vulnerability in Hospital Management System v1.0 is available. It is recommended to update to the latest version or apply the provided patch.