← Volver al buscador de CVEs

CVE-2026-19067

Descripción

A security flaw has been discovered in itsourcecode Hospital Management System 1.0. The affected element is an unknown function of the file /treatment.php. Performing a manipulation of the argument editid results in sql injection. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.

CVSS 6.3EPSS 0.25%Riesgo 0.64
Ver fuente
Publicación
2026-08-06 22:16:54
Última modificación
2026-08-08 03:16:45
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L