Unrated severityNVD Advisory· Published Jun 29, 2026· Updated Jun 30, 2026
itsourcecode Hospital Management System doctorprofile.php sql injection
CVE-2026-13542
Description
A security vulnerability has been detected in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /doctorprofile.php. The manipulation of the argument doctorname leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used.
Patches
Vulnerability mechanics
References
6- github.com/ltranquility/submit/issues/18mitreexploitissue-tracking
- vuldb.com/cve/CVE-2026-13542mitrethird-party-advisory
- vuldb.com/submit/842051mitrethird-party-advisory
- itsourcecode.commitreproduct
- vuldb.com/vuln/374550mitrevdb-entrytechnical-description
- vuldb.com/vuln/374550/ctimitresignaturepermissions-required
News mentions
0No linked articles in our index yet.