VYPR

Hospital Management System

by Mayurik

CVEs (3)

  • CVE-2024-28320HigApr 29, 2024
    risk 0.49cvss 7.6epss 0.01

    Insecure Direct Object References (IDOR) vulnerability in Hospital Management System 1.0 allows attackers to manipulate user parameters for unauthorized access and modifications via crafted POST request to /patient/edit-user.php.

  • CVE-2024-11073MedNov 11, 2024
    risk 0.28cvss 4.3epss 0.01

    A vulnerability classified as problematic has been found in SourceCodester Hospital Management System 1.0. This affects an unknown part of the file /vm/patient/delete-account.php. The manipulation of the argument id leads to improper authorization. It is possible to initiate the…

  • CVE-2024-11102LowNov 12, 2024
    risk 0.23cvss 3.5epss 0.00

    A vulnerability was found in SourceCodester Hospital Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /vm/doctor/edit-doc.php. The manipulation of the argument name leads to cross site scripting. The attack…