VYPR

Hospital's Patient Records Management System

by Itsourcecode

CVEs (49)

  • CVE-2022-27299CriApr 26, 2022
    risk 0.64cvss 9.8epss 0.02

    Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the component room.php.

  • CVE-2022-34590HigJul 20, 2022
    risk 0.47cvss 7.2epss 0.04

    Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter in /HMS/admin.php.

  • CVE-2022-32351HigJun 14, 2022
    risk 0.47cvss 7.2epss 0.01

    Hospital's Patient Records Management System v1.0 is vulnerable to SQL Injection via /hprms/classes/Master.php?f=delete_message.

  • CVE-2022-32343HigJun 14, 2022
    risk 0.47cvss 7.2epss 0.01

    Hospital's Patient Records Management System v1.0 is vulnerable to SQL Injection via hprms/admin/room_types/manage_room_type.php?id=.

  • CVE-2026-75088MedAug 18, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was determined in itsourcecode Hospital Management System 1.0. This impacts an unknown function of the file /viewbilling.php. Executing a manipulation of the argument delid can lead to sql injection. The attack can be launched remotely. The exploit has been…

  • CVE-2026-75087MedAug 18, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in itsourcecode Hospital Management System 1.0. This affects an unknown function of the file /viewdepartment.php. Performing a manipulation of the argument delid results in sql injection. The attack can be initiated remotely. The exploit has been made…

  • CVE-2026-75086MedAug 18, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability has been found in itsourcecode Hospital Management System 1.0. The impacted element is an unknown function of the file /viewroom.php. Such manipulation of the argument delid leads to sql injection. It is possible to launch the attack remotely. The exploit has…

  • CVE-2026-20000MedAug 17, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was detected in itsourcecode Hospital Management System 1.0. The impacted element is an unknown function of the file /viewprescriptionrecord.php. The manipulation of the argument delid results in sql injection. It is possible to launch the attack remotely. The…

  • CVE-2026-19973MedAug 17, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in itsourcecode Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /viewpaymentreport.php. Performing a manipulation of the argument delid results in sql injection. It is possible to initiate the…

  • CVE-2026-19972MedAug 17, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability has been found in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /viewpatient.php. Such manipulation of the argument delid leads to sql injection. The attack may be performed from remote. The exploit has been disclosed to…

  • CVE-2026-19934MedAug 16, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability has been found in itsourcecode Hospital Management System 1.0. This impacts an unknown function of the file /vieworder.php. The manipulation of the argument delid leads to sql injection. The attack is possible to be carried out remotely. The exploit has been…

  • CVE-2026-19894MedAug 15, 2026
    risk 0.41cvss 6.3epss 0.00

    A security flaw has been discovered in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /viewmedicine.php. Performing a manipulation of the argument delid results in sql injection. The attack can be initiated remotely. The exploit has been…

  • CVE-2026-19767MedAug 14, 2026
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in itsourcecode Hospital Management System 1.0. This issue affects some unknown processing of the file viewdoctortimings.php. Executing a manipulation of the argument delid can lead to sql injection. The attack may be performed from remote. The…

  • CVE-2026-19364MedAug 9, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was determined in itsourcecode Hospital Management System 1.0. The affected element is an unknown function of the file /viewdoctorconsultancycharge.php. This manipulation of the argument delid causes sql injection. The attack is possible to be carried out…

  • CVE-2026-19347MedAug 9, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was identified in itsourcecode Hospital Management System 1.0. This issue affects some unknown processing of the file /viewdoctor.php. Such manipulation of the argument delid leads to sql injection. The attack can be launched remotely. The exploit is publicly…

  • CVE-2026-19071MedAug 6, 2026
    risk 0.41cvss 6.3epss 0.00

    A flaw has been found in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /viewappointment.php. This manipulation of the argument delid causes sql injection. It is possible to initiate the attack remotely. The exploit has been published…

  • CVE-2026-19070MedAug 6, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was detected in itsourcecode Hospital Management System 1.0. This impacts an unknown function of the file /viewadmin.php. The manipulation of the argument delid results in sql injection. The attack may be performed from remote. The exploit is now public and may…

  • CVE-2026-19069MedAug 6, 2026
    risk 0.41cvss 6.3epss 0.00

    A security vulnerability has been detected in itsourcecode Hospital Management System 1.0. This affects an unknown function of the file /treatmentrecord.php. The manipulation of the argument editid leads to sql injection. The attack is possible to be carried out remotely. The…

  • CVE-2026-19068MedAug 6, 2026
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in itsourcecode Hospital Management System 1.0. The impacted element is an unknown function of the file /treatmentdetail.php. Executing a manipulation of the argument patientid can lead to sql injection. The attack can be executed remotely. The…

  • CVE-2026-19067MedAug 6, 2026
    risk 0.41cvss 6.3epss 0.00

    A security flaw has been discovered in itsourcecode Hospital Management System 1.0. The affected element is an unknown function of the file /treatment.php. Performing a manipulation of the argument editid results in sql injection. Remote exploitation of the attack is possible.…

Page 1 of 3