CVE-2026-3724: SourceCodester Patients Waiting Area Queue Management System checkin.php improper authorization
A weakness has been identified in SourceCodester Patients Waiting Area Queue Management System 1.0. This impacts an unknown function of the file /checkin.php. This manipulation of the argument patientid causes improper authorization. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be used for attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-3724?
CVE-2026-3724 has been classified with a significant severity rating due to its potential for unauthorized access.
How do I fix CVE-2026-3724?
To fix CVE-2026-3724, implement proper authorization checks in the checkin.php file to validate patient_id submissions.
What type of vulnerability is CVE-2026-3724?
CVE-2026-3724 is characterized as an improper authorization vulnerability affecting the Patients Waiting Area Queue Management System.
Which software is affected by CVE-2026-3724?
CVE-2026-3724 affects version 1.0 of the SourceCodester Patients Waiting Area Queue Management System.
What are the potential impacts of CVE-2026-3724?
The potential impacts of CVE-2026-3724 include unauthorized access to patient data and manipulation of the waiting area queue.