First published: Thu Sep 28 2023(Updated: )
Hospital management system version 378c157 allows to bypass authentication. This is possible because the application is vulnerable to SQLI.
Credit: help@fluidattacks.com help@fluidattacks.com
Affected Software | Affected Version | How to fix |
---|---|---|
Projectworlds Hospital Management System In Php | =2018-06-17 | |
=2018-06-17 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-5004.
The severity of CVE-2023-5004 is critical with a score of 9.8.
The Hospital management system version 378c157 is vulnerable to SQL injection (SQLI), which allows an attacker to bypass authentication.
The affected software for CVE-2023-5004 is the Hospital management system version 378c157.
To fix CVE-2023-5004, it is recommended to apply the latest patch or update provided by the software vendor.