CVE-2026-19069: itsourcecode Hospital Management System treatmentrecord.php sql injection
Published Aug 6, 2026
·Updated
A security vulnerability has been detected in itsourcecode Hospital Management System 1.0. This affects an unknown function of the file /treatmentrecord.php. The manipulation of the argument editid leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used.
Affected Software
1 affected component
itsourcecode Hospital Management System=1.0
Event History
Aug 6, 2026
CVE Published
via MITRE·07:45 PM
Data Sourced
via MITRE·07:45 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-19069?
The severity of CVE-2026-19069 is medium with a score of 6.3.
2
How does CVE-2026-19069 affect itsourcecode Hospital Management System?
CVE-2026-19069 allows for SQL injection through manipulation of the editid argument in the treatmentrecord.php file.
3
Can CVE-2026-19069 be exploited remotely?
Yes, CVE-2026-19069 can be exploited remotely.
4
What type of vulnerability is CVE-2026-19069 classified as?
CVE-2026-19069 is classified as an SQL Injection vulnerability.
5
What file is associated with CVE-2026-19069?
CVE-2026-19069 is associated with the treatmentrecord.php file in itsourcecode Hospital Management System.