CVE-2025-3181: projectworlds Online Doctor Appointment Booking System appointment.php sql injection
A vulnerability, which was classified as critical, has been found in projectworlds Online Doctor Appointment Booking System 1.0. Affected by this issue is some unknown functionality of the file /patient/appointment.php?scheduleDate=1&appid=1. The manipulation of the argument scheduleDate leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-3181?
CVE-2025-3181 is classified as a critical vulnerability.
What systems are affected by CVE-2025-3181?
CVE-2025-3181 affects projectworlds Online Doctor Appointment Booking System version 1.0.
How do I fix CVE-2025-3181?
To fix CVE-2025-3181, it is recommended to update the affected Online Doctor Appointment Booking System to a patched version.
What type of vulnerability is CVE-2025-3181?
CVE-2025-3181 involves an unknown functionality vulnerability specifically within the appointment scheduling feature.
What are the risks of CVE-2025-3181?
CVE-2025-3181 could potentially allow attackers to manipulate appointment scheduling, leading to unauthorized access or data breaches.