Medium severity4.8NVD Advisory· Published Jan 26, 2021· Updated Jul 9, 2026
CVE-2020-36011
CVE-2020-36011
Description
A cross-site scripting (XSS) issue in Add Patient Form in QDOCS Smart Hospital Management System 3.1 allows a remote attacker to inject arbitrary code via the Name, Guardian Name, Email, Address, Remarks, or Any Known Allergies field.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: = 3.1
- QDOCS/Smart Hospital Management Systemdescription
- cpe:2.3:a:qdocs:smart_hospital:3.1:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- www.exploit-db.com/exploits/49290nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.