Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via multiple parameters in add_patient.php. As a result, an authenticated malicious user can compromise the databases system and in some cases leverage this vulnerability to get remote code execution on the remote web server.
Advisories
Source ID Title
EUVD EUVD EUVD-2021-30542 Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via multiple parameters in add_patient.php. As a result, an authenticated malicious user can compromise the databases system and in some cases leverage this vulnerability to get remote code execution on the remote web server.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T04:03:08.545Z

Reserved: 2021-11-15T00:00:00

Link: CVE-2021-43630

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-12-22T18:15:07.813

Modified: 2024-11-21T06:29:32.407

Link: CVE-2021-43630

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses