Description
A vulnerability was identified in onetwothreeneth HospitalManagementSystem up to 9ef91ed6007314b6473110ed699dff76d158f61d. Affected by this issue is the function get of the file print.php. The manipulation of the argument transaction_id leads to sql injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The project was informed of the problem early through an issue report but has not responded yet.
Published: 2026-10-05
Score: 6.9 Medium
EPSS: n/a
KEV: No
Impact: Remote SQL Injection
Action: Patch ASAP
AI Analysis

Impact

The vulnerability is an SQL injection flaw in the get function of print.php. By manipulating the transaction_id argument, an attacker can inject arbitrary SQL code, potentially reading, modifying or deleting data stored in the underlying database. The flaw arises from inadequate input validation (CWE-74) and the direct construction of an SQL query string (CWE-89).

Affected Systems

The affected component is the HospitalManagementSystem developed by onetwothreeneth. The function in the print.php file accepts a transaction_id parameter without proper sanitization. Because the project uses a rolling release model, no fixed commit or release version has been published yet, meaning that any installation built prior to the commit identified as 9ef91ed6007314b6473110ed699dff76d158f61d is potentially vulnerable.

Risk and Exploitability

The CVSS score of 6.9 indicates a moderate severity. The vulnerability can be exploited remotely, and public exploit code is available, making it a tangible threat to deployed instances. The EPSS score is not provided, so the exploitation probability is uncertain; however, the simple remote attack path and lack of response from maintainers increase the likelihood that the flaw will be abused. The issue is not listed in CISA's KEV catalog, but its remote nature and public exploit make it a priority for remediation.

Generated by OpenCVE AI on October 5, 2026 at 19:25 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the latest patch or upgrade HospitalManagementSystem to a fixed release once the maintainers address the SQL injection bug.
  • If an immediate upgrade is not possible, restrict access to print.php by web‑server rules or firewall to trusted IP ranges and require authentication.
  • Validate the transaction_id parameter on the server side to allow only numeric values, or rewrite the database queries to use parameterized statements to eliminate SQL injection.
  • Continuously monitor database and web logs for anomalous SQL queries or repeated injection attempts.

Generated by OpenCVE AI on October 5, 2026 at 19:25 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 05 Oct 2026 18:45:00 +0000

Type Values Removed Values Added
Description A vulnerability was identified in onetwothreeneth HospitalManagementSystem up to 9ef91ed6007314b6473110ed699dff76d158f61d. Affected by this issue is the function get of the file print.php. The manipulation of the argument transaction_id leads to sql injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The project was informed of the problem early through an issue report but has not responded yet.
Title onetwothreeneth HospitalManagementSystem print.php get sql injection
First Time appeared Onetwothreeneth
Onetwothreeneth hospitalmanagementsystem
Weaknesses CWE-74
CWE-89
CPEs cpe:2.3:a:onetwothreeneth:hospitalmanagementsystem:*:*:*:*:*:*:*:*
Vendors & Products Onetwothreeneth
Onetwothreeneth hospitalmanagementsystem
References
Metrics cvssV2_0

{'score': 7.5, 'vector': 'AV:N/AC:L/Au:N/C:P/I:P/A:P/E:POC/RL:ND/RC:C'}

cvssV3_0

{'score': 7.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:C'}

cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:C'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}


Subscriptions

Onetwothreeneth Hospitalmanagementsystem
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-10-05T18:30:14.826Z

Reserved: 2026-10-05T10:15:01.860Z

Link: CVE-2026-105386

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-10-05T19:17:16.700

Modified: 2026-10-05T19:17:16.700

Link: CVE-2026-105386

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-05T19:30:21Z

Weaknesses
  • CWE-74

    Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

  • CWE-89

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')