VYPR

Hosp Order

by Sfturing

Source repositories

CVEs (15)

  • CVE-2026-86263HigSep 7, 2026
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was detected in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. This impacts the function orderRecordsService.cancelOrder of the file ssm_pro/src/main/java/cn/sfturing/web/OrderController.java of the component Order Cancellation. The…

  • CVE-2026-86262HigSep 7, 2026
    risk 0.47cvss 7.3epss 0.01

    A security vulnerability has been detected in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. This affects the function updateOrderSta1/updateOrderdiseaseInfo of the file ssm_pro/src/main/java/cn/sfturing/web/OrderController.java of the component Order…

  • CVE-2026-86261HigSep 7, 2026
    risk 0.47cvss 7.3epss 0.01

    A weakness has been identified in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. The impacted element is an unknown function of the file ssm_pro/src/main/java/cn/sfturing/web/OrderController.java of the component Order Controller. Executing a manipulation of…

  • CVE-2026-86260MedSep 7, 2026
    risk 0.42cvss 6.5epss 0.01

    A security flaw has been discovered in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. The affected element is the function modifyPassWord of the file ssm_pro/src/main/java/cn/sfturing/web/CommonUserController.java of the component Password Recovery.…

  • CVE-2025-15450MedJan 5, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was identified in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. Affected by this vulnerability is the function findOrderHosNum of the file /ssm_pro/orderHos/. Such manipulation of the argument hospitalAddress/hospitalName leads to sql…

  • CVE-2025-6768MedJun 27, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability classified as critical has been found in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. Affected is the function findAllHosByCondition of the file HospitalServiceImpl.java. The manipulation of the argument hospitalName leads to sql injection.…

  • CVE-2025-6767MedJun 27, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. It has been rated as critical. This issue affects the function findDoctorByCondition of the file DoctorServiceImpl.java. The manipulation of the argument hospitalName leads to sql…

  • CVE-2025-6766MedJun 27, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. It has been declared as critical. This vulnerability affects the function getOfficeName of the file OfficeServiceImpl.java. The manipulation of the argument officesName leads to sql…

  • CVE-2026-96548MedSep 23, 2026
    risk 0.36cvss 5.6epss 0.00

    A flaw has been found in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. This affects an unknown part of the file ssm_pro/src/main/resources/jdbc.properties. This manipulation causes hard-coded credentials. It is possible to initiate the attack remotely. The…

  • CVE-2026-96551MedSep 23, 2026
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was determined in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. Impacted is an unknown function of the file ssm_pro/src/main/java/cn/sfturing/web/CommonUserController.java. Executing a manipulation can lead to cross-site request forgery. The…

  • CVE-2026-95396MedSep 22, 2026
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was identified in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. Affected is an unknown function of the file HospitalController.java of the component Public Search Handlers. The manipulation of the argument Search leads to cross site…

  • CVE-2026-86264MedSep 7, 2026
    risk 0.28cvss 4.3epss 0.00

    A flaw has been found in sfturing ssm_pro up to 627f426331da8086ce8fff2017d65b1ddef384f8. Affected is an unknown function of the file ssm_pro/src/main/java/cn/sfturing/web/OrderController.java of the component Order Endpoint. This manipulation of the argument…

  • CVE-2026-96550LowSep 23, 2026
    risk 0.24cvss 3.7epss 0.00

    A vulnerability was found in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. This issue affects the function getProperties of the file ssm_pro/src/main/java/cn/sfturing/utils/MailUtil.java. Performing a manipulation results in cleartext transmission of…

  • CVE-2026-96549LowSep 23, 2026
    risk 0.21cvss 3.3epss 0.00

    A vulnerability has been found in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. This vulnerability affects unknown code of the file ssm_pro/src/main/java/cn/sfturing/service/impl/CommonUserServiceImpl.java. Such manipulation leads to cleartext storage of…

  • CVE-2026-96552LowSep 23, 2026
    risk 0.20cvss 3.1epss 0.00

    A vulnerability was identified in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. The affected element is the function MD5.getMD5 of the file ssm_pro/src/main/java/cn/sfturing/utils/MD5.java of the component User Password Handler. The manipulation leads to…