High severity7.5NVD Advisory· Published Mar 24, 2021· Updated Jun 17, 2026
CVE-2021-27320
CVE-2021-27320
Description
Blind SQL injection in contactus.php in Doctor Appointment System 1.0 allows an unauthenticated attacker to insert malicious SQL queries via firstname parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:doctor_appointment_system_project:doctor_appointment_system:1.0:*:*:*:*:*:*:*
- Doctor Appointment System/Doctor Appointment Systemdescription
- Range: <=1.0
Patches
Vulnerability mechanics
References
2- packetstormsecurity.com/files/161642/Doctor-Appointment-System-1.0-Blind-SQL-Injection.htmlnvdExploitThird Party AdvisoryVDB Entry
- www.sourcecodester.com/php/14182/doctor-appointment-system.htmlnvdProductThird Party Advisory
News mentions
0No linked articles in our index yet.