Hospital management system version 378c157 allows to bypass authentication.
This is possible because the application is vulnerable to SQLI.
Hospital management system version 378c157 allows to bypass authentication.
This is possible because the application is vulnerable to SQLI.
hms-staff.php in Projectworlds Hospital Management System Mini-Project through 2018-06-17 allows SQL injection via the type parameter.