VYPR

Doctormms

by Doctormms

CVEs (1)

  • CVE-2023-39852CriAug 15, 2023
    risk 0.64cvss 9.8epss 0.01

    Doctormms v1.0 was discovered to contain a SQL injection vulnerability via the $userid parameter at myAppoinment.php. NOTE: this is disputed by a third party who claims that the userid is a session variable controlled by the server, and thus cannot be used for exploitation. The…