CVE-2023-40945: SQL Injection
Published Sep 11, 2023
·Updated
Sourcecodester Doctor Appointment System 1.0 is vulnerable to SQL Injection in the variable $userid at doctors\myDetails.php.
Affected Software
1 affected component
Doctor Appointment System Project Doctor Appointment System=1.0
Event History
Sep 11, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is CVE-2023-40945?
CVE-2023-40945 is a vulnerability in the Sourcecodester Doctor Appointment System 1.0 that allows SQL Injection in the variable $userid in doctors\myDetails.php.
2
How severe is CVE-2023-40945?
CVE-2023-40945 has a severity keyword of 'critical' and a severity value of 9.8.
3
How does CVE-2023-40945 affect the Doctor Appointment System 1.0?
CVE-2023-40945 affects the Doctor Appointment System 1.0 by allowing SQL Injection in the variable $userid in doctors\myDetails.php.
4
How can I fix CVE-2023-40945?
To fix CVE-2023-40945, you should update the Sourcecodester Doctor Appointment System to a patched version or apply a fix provided by the vendor.