CVE-2023-5004: Hospital-management-system-in-php 378c157 - Blind SQL Injection
Published Sep 28, 2023
·Updated
Hospital management system version 378c157 allows to bypass authentication.
This is possible because the application is vulnerable to SQLI.
Affected Software
1 affected component
Projectworlds Hospital Management System In Php=2018-06-17
Event History
Sep 28, 2023
CVE Published
via MITRE·08:40 PM
Data Sourced
via MITRE·08:40 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2023-5004.
2
What is the severity of CVE-2023-5004?
The severity of CVE-2023-5004 is critical with a score of 9.8.
3
How does the Hospital management system version 378c157 allow bypassing authentication?
The Hospital management system version 378c157 is vulnerable to SQL injection (SQLI), which allows an attacker to bypass authentication.
4
What is the affected software for CVE-2023-5004?
The affected software for CVE-2023-5004 is the Hospital management system version 378c157.
5
Is there a fix available for CVE-2023-5004?
To fix CVE-2023-5004, it is recommended to apply the latest patch or update provided by the software vendor.