First published: Mon Oct 21 2024(Updated: )
Multiple Cross Site Scripting (XSS) vulnerabilities exist in PHPGurukul Hospital Management System 4.0 via the docname parameter in /admin/add-doctor.php and /admin/edit-doctor.php
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PHPGurukul Hospital Management System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-46238 is classified as a high severity vulnerability due to the potential for exploitation through cross-site scripting attacks.
To fix CVE-2024-46238, sanitize and validate the input for the docname parameter in both /admin/add-doctor.php and /admin/edit-doctor.php.
CVE-2024-46238 affects PHPGurukul Hospital Management System version 4.0.
CVE-2024-46238 is associated with multiple cross-site scripting (XSS) vulnerabilities.
Yes, CVE-2024-46238 can be exploited remotely by attackers through specially crafted requests to the affected endpoints.