Unrated severityNVD Advisory· Published Aug 8, 2023· Updated Aug 2, 2024
SourceCodester Doctors Appointment System login.php sql injection
CVE-2023-4219
Description
A vulnerability was found in SourceCodester Doctors Appointment System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file login.php. The manipulation of the argument useremail leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-236365 was assigned to this vulnerability.
Affected products
2- Range: =1.0
- Range: 1.0
Patches
Vulnerability mechanics
References
3- github.com/Yesec/-Doctor-s-Appointment-System/blob/main/SQL%20Injection%20in%20login.php/vuln.mdmitreexploit
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
News mentions
0No linked articles in our index yet.