VYPR

Simple Doctor\'s Appointment System

by Simple Doctor\'s Appointment System Project

CVEs (1)

  • CVE-2022-28568CriMay 4, 2022
    risk 0.64cvss 9.8epss 0.03

    Sourcecodester Doctor's Appointment System 1.0 is vulnerable to File Upload to RCE via Image upload from the administrator panel. An attacker can obtain remote command execution just by knowing the path where the images are stored.