Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2021-36352 1 Care2x 1 Hospital Information Management 2024-11-21 5.4 Medium
Stored cross-site scripting (XSS) vulnerability in Care2x Hospital Information Management 2.7 Alpha. The vulnerability has found POST requests in /modules/registration_admission/patient_register.php page with "name_middle", "addr_str", "station", "name_maiden", "name_2", "name_3" parameters.
CVE-2021-36351 1 Care2x 1 Hospital Information Management System 2024-11-21 9.8 Critical
SQL Injection Vulnerability in Care2x Open Source Hospital Information Management 2.7 Alpha via the (1) pday, (2) pmonth, and (3) pyear parameters in GET requests sent to /modules/nursing/nursing-station.php.