CVE-2024-7754: SourceCodester Clinics Patient Management System check_medicine_name.php sql injection
Published Aug 14, 2024
·Updated
A vulnerability was found in SourceCodester Clinics Patient Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /ajax/checkmedicinename.php. The manipulation of the argument username leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
1 affected component
oretnom23 Clinic\'s Patient Management System=1.0
Event History
Aug 14, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-7754?
CVE-2024-7754 has been rated as critical.
2
What type of vulnerability is CVE-2024-7754?
CVE-2024-7754 is an SQL injection vulnerability.
3
Which file is affected by CVE-2024-7754?
The file affected by CVE-2024-7754 is /ajax/check_medicine_name.php.
4
How do I fix CVE-2024-7754?
To fix CVE-2024-7754, validate and sanitize user input in the affected file to prevent SQL injection.
5
What software is impacted by CVE-2024-7754?
CVE-2024-7754 affects SourceCodester Clinics Patient Management System version 1.0.