First published: Thu Sep 28 2023(Updated: )
Hospital management system version 378c157 allows to bypass authentication. This is possible because the application is vulnerable to SQLI.
Credit: help@fluidattacks.com help@fluidattacks.com
Affected Software | Affected Version | How to fix |
---|---|---|
Projectworlds Hospital Management System In Php | =2018-06-17 | |
=2018-06-17 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-5053 is critical with a severity value of 9.8.
You can bypass authentication in Hospital Management System version 378c157 by exploiting the vulnerability that allows SQL injection.
The affected software by CVE-2023-5053 is Projectworlds Hospital Management System In Php version 2018-06-17.
To fix the SQL injection vulnerability in Hospital Management System version 378c157, you should apply the recommended patch or update provided by the software vendor.
You can find more information about CVE-2023-5053 on the following references: 1. [Fluid Attacks Advisory](https://fluidattacks.com/advisories/shierro) 2. [GitHub Repository](https://github.com/projectworldsofficial/hospital-management-system-in-php/)