Medium severity6.3NVD Advisory· Published Aug 17, 2026· Updated Aug 20, 2026
CVE-2026-19972
CVE-2026-19972
Description
A vulnerability has been found in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /viewpatient.php. Such manipulation of the argument delid leads to sql injection. The attack may be performed from remote. The exploit has been disclosed to the public and may be used.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: 1.0
Patches
Vulnerability mechanics
References
6News mentions
1- Six SQLi Flaws in Itsourcecode Hospital Management System 1.0 Disclosed with Public ExploitsVypr Intelligence · Aug 17, 2026