Impact
The flaw exists in an undefined function within listdoctor.php. By supplying a crafted searchtext parameter, a remote attacker can inject arbitrary SQL into the backend query. The vulnerability is classified as CWE‑74 and CWE‑89.
Affected Systems
The affected product is the online‑clinic‑management‑system developed by subhajitkhan. The repository uses a rolling‑release model and does not publish immutable version numbers. Any build that contains the commit hash e9ee77a8827a1446220fa07ee693dc4d9a29a578 or prior may be affected, and no fixed release has been issued yet. The developer has acknowledged the issue but has not released a fix.
Risk and Exploitability
The CVSS score of 6.9 marks the vulnerability as medium severity. The EPSS score is listed as < 1 %, indicating a very low probability of active exploitation, and the vulnerability is not included in the CISA KEV catalog. The exploit can be launched remotely by submitting a crafted searchtext value to /listdoctor.php. The description does not mention authentication requirements or other prerequisites.
OpenCVE Enrichment