CVE-2025-7153: CodeAstro Simple Hospital Management System POST Parameter doctor.html cross site scripting
A vulnerability classified as problematic was found in CodeAstro Simple Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /doctor.html of the component POST Parameter Handler. The manipulation of the argument First Name/Last name/Address leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-7153?
The severity of CVE-2025-7153 is classified as problematic.
How do I fix CVE-2025-7153?
To fix CVE-2025-7153, update the CodeAstro Simple Hospital Management System to the latest version that addresses this vulnerability.
What component is affected by CVE-2025-7153?
CVE-2025-7153 affects the POST Parameter Handler functionality in the file /doctor.html.
What type of vulnerability is CVE-2025-7153?
CVE-2025-7153 is classified as a manipulation vulnerability that affects user input fields.
Who is the vendor associated with CVE-2025-7153?
The vendor associated with CVE-2025-7153 is CodeAstro.