First published: Fri Jul 01 2022(Updated: )
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the loginid parameter at doctorlogin.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hospital Management System Project Hospital Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-32094 is critical with a severity value of 9.8.
CVE-2022-32094 affects Hospital Management System v1.0 by allowing SQL injection via the loginid parameter at doctorlogin.php.
The SQL injection vulnerability in CVE-2022-32094 allows an attacker to manipulate the loginid parameter, potentially gaining unauthorized access to the system or compromising the integrity of the database.
To fix the SQL injection vulnerability in Hospital Management System v1.0 (CVE-2022-32094), it is recommended to sanitize and properly validate user input to prevent SQL injection attacks.
More information about CVE-2022-32094 can be found at the following reference: [link](https://github.com/Danie1233/Hospital-Management-System-v1.0-SQLi-3/)