CVE-2025-4196: SourceCodester Patient Record Management System birthing.php sql injection
Published May 2, 2025
·Updated
A vulnerability was found in SourceCodester Patient Record Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /birthing.php. The manipulation of the argument compid leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
Sourcecodester Patient Record Management System
Fabianros Patient Record Management System=1.0
Event History
May 2, 2025
CVE Published
via MITRE·01:31 AM
Data Sourced
via MITRE·01:31 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-4196?
CVE-2025-4196 has been rated as critical.
2
What component of the SourceCodester Patient Record Management System is affected by CVE-2025-4196?
CVE-2025-4196 affects the file /birthing.php.
3
What type of vulnerability is CVE-2025-4196?
CVE-2025-4196 is a SQL injection vulnerability.
4
How can an attacker exploit CVE-2025-4196?
An attacker can exploit CVE-2025-4196 by manipulating the argument comp_id.
5
Can CVE-2025-4196 be exploited remotely?
Yes, the attack for CVE-2025-4196 may be initiated remotely.