Critical severity9.8NVD Advisory· Published May 4, 2022· Updated Jul 9, 2026
CVE-2022-28568
CVE-2022-28568
Description
Sourcecodester Doctor's Appointment System 1.0 is vulnerable to File Upload to RCE via Image upload from the administrator panel. An attacker can obtain remote command execution just by knowing the path where the images are stored.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:simple_doctor\'s_appointment_system_project:simple_doctor\'s_appointment_system:1.0:*:*:*:*:*:*:*
- Range: 1.0
Patches
Vulnerability mechanics
References
1- github.com/b3nj1-1/CVE/tree/main/CVE-2022-28568nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.