Podatność CVE-2020-26630


Publikacja: 2024-01-10

Opis:
A Time-Based SQL Injection vulnerability was discovered in Hospital Management System V4.0 which can allow an attacker to dump database information via a special payload in the 'Doctor Specialization' field under the 'Go to Doctors' tab after logging in as an admin.

W naszej bazie, znaleźliśmy następujące noty dla tego CVE:
Tytuł
Autor
Data
High
Hospital Management System 4.0 XSS / Shell Upload / SQL Injection
Louise Ng
24.12.2023

 Referencje:
https://packetstormsecurity.com/files/176302/Hospital-Management-System-4.0-XSS-Shell-Upload-SQL-Injection.html

Copyright 2024, cxsecurity.com

 

Back to Top