← Back to CVE search

CVE-2026-14703

Hospital Management System

Description

A vulnerability has been found in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /patientorder.php. Such manipulation of the argument editid leads to sql injection. The attack may be performed from remote. The exploit has been disclosed to the public and may be used.

CVSS 6.3EPSS 0.20400000000000001%Risk 0.64
View source
Published
2026-07-05 05:16:28
Affected versions
==1.0
Type
Web application
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L