Unrated severityNVD Advisory· Published Jul 5, 2026· Updated Jul 6, 2026
itsourcecode Hospital Management System payment.php sql injection
CVE-2026-14773
Description
A vulnerability was found in itsourcecode Hospital Management System 1.0. This affects an unknown function of the file /payment.php. The manipulation of the argument patientid results in sql injection. The attack can be launched remotely. The exploit has been made public and could be used.
Affected products
1- Range: = 1.0
Patches
Vulnerability mechanics
References
6- github.com/ltranquility/submit_vuln/issues/5mitreexploitissue-tracking
- vuldb.com/cve/CVE-2026-14773mitrethird-party-advisory
- vuldb.com/submit/850644mitrethird-party-advisory
- itsourcecode.commitreproduct
- vuldb.com/vuln/376363mitrevdb-entrytechnical-description
- vuldb.com/vuln/376363/ctimitresignaturepermissions-required
News mentions
0No linked articles in our index yet.