Back to Database
Status published
Critical
CVE-2022-24263
Hospital Management System v4.0 was discovered to contain a SQL...
Vulnerability Description
Hospital Management System v4.0 was discovered to contain a SQL injection vulnerability in /Hospital-Management-System-master/func.php via the email parameter.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-24263
Credits & Attribution
No credits recorded in the NVD database.
References
- https://github.com/truonghuuphuc/CVE
- https://github.com/kishan0725/Hospital-Management-System/issues/17
- http://packetstormsecurity.com/files/165882/Hospital-Management-System-4.0-SQL-Injection.html
- https://github.com/nu11secur1ty/CVE-mitre/tree/main/2022/CVE-2022-24263
- https://www.nu11secur1ty.com/2022/02/cve-2022-24263.html
More from phpgurukul
View All →CVE-2022-47102
A cross-site scripting (XSS) vulnerability in Student Study Center Management...
Unknown
0
CVE-2022-46499
Hospital Management System 1.0 was discovered to contain a SQL...
Unknown
0
CVE-2022-46498
Hospital Management System 1.0 was discovered to contain a SQL...
Unknown
0
CVE-2022-46497
Hospital Management System 1.0 was discovered to contain a SQL...
Unknown
0
CVE-2022-46128
phpgurukul Doctor Appointment Management System V 1.0.0 is vulnerable to...
Unknown
0
Affected Vendor
phpgurukul
View all reports →Affected Software
hospital management system
Vulnerable Versions:
4.0
Timeline
Official Publish:
January 31st, 2022
Last Modified:
August 3rd, 2024
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.