Metrics
Affected Vendors & Products
Wed, 28 May 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Code-projects
Code-projects patient Record Management System |
|
| CPEs | cpe:2.3:a:code-projects:patient_record_management_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Code-projects
Code-projects patient Record Management System |
Fri, 02 May 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 02 May 2025 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. Affected is an unknown function of the file /edit_xpatient.php. The manipulation of the argument lastname leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well. | |
| Title | code-projects Patient Record Management System edit_xpatient.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-02T01:31:06.560Z
Updated: 2025-05-02T16:38:54.031Z
Reserved: 2025-05-01T13:15:22.781Z
Link: CVE-2025-4197
Updated: 2025-05-02T16:36:40.218Z
Status : Analyzed
Published: 2025-05-02T02:15:17.687
Modified: 2025-05-28T16:02:23.317
Link: CVE-2025-4197
No data.