CVE-2023-4219: SourceCodester Doctors Appointment System login.php sql injection
A vulnerability was found in SourceCodester Doctors Appointment System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file login.php. The manipulation of the argument useremail leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-236365 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-4219?
CVE-2023-4219 is a critical vulnerability found in SourceCodester Doctors Appointment System 1.0.
What is the severity of CVE-2023-4219?
CVE-2023-4219 has a severity value of 7.5, which is classified as high.
What is the affected software of CVE-2023-4219?
The affected software of CVE-2023-4219 is the Doctors Appointment System 1.0 developed by SourceCodester.
What is the CWE classification of CVE-2023-4219?
CVE-2023-4219 is classified under CWE-89, which refers to SQL Injection vulnerabilities.
How can the CVE-2023-4219 vulnerability be exploited?
CVE-2023-4219 can be exploited remotely by manipulating the 'useremail' argument in the 'login.php' file, leading to SQL Injection.