CVE-2026-2179: PHPGurukul Hospital Management System manage-users.php sql injection
A vulnerability was determined in PHPGurukul Hospital Management System 4.0. This impacts an unknown function of the file /admin/manage-users.php. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2179?
CVE-2026-2179 is classified as a critical severity vulnerability due to its potential for SQL injection.
How do I fix CVE-2026-2179?
To fix CVE-2026-2179, ensure to sanitize and validate all user inputs and apply parameterized queries in the affected file manage-users.php.
What kind of attack is possible with CVE-2026-2179?
CVE-2026-2179 allows attackers to perform SQL injection attacks which can lead to unauthorized access to the database.
Which file is impacted by CVE-2026-2179?
CVE-2026-2179 specifically impacts the file /admin/manage-users.php in the PHPGurukul Hospital Management System.
What version of the PHPGurukul Hospital Management System is affected by CVE-2026-2179?
CVE-2026-2179 affects all installations of PHPGurukul Hospital Management System version 4.0.