Medium severity4.2NVD Advisory· Published Jan 21, 2025· Updated Jun 17, 2026
CVE-2024-56998
CVE-2024-56998
Description
PHPGurukul Hospital Management System 4.0 is vulnerable to Cross Site Scripting (XSS) in /edit-profile.php via the parameter $address.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:phpgurukul:hospital_management_system:4.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:phpgurukul:hospital_management_system:4.0:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: 4.0
Patches
Vulnerability mechanics
References
1- github.com/kirito999/HMS_stored_XSS/blob/main/stored%20XSS2%20in%20HMS4.0/stored%20XSS2%20in%20HMS.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.