A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. Affected is an unknown function of the file /edit_fpatient.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Metrics
Affected Vendors & Products
References
History
Wed, 28 May 2025 21:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Code-projects
Code-projects patient Record Management System |
|
CPEs | cpe:2.3:a:code-projects:patient_record_management_system:1.0:*:*:*:*:*:*:* | |
Vendors & Products |
Code-projects
Code-projects patient Record Management System |
Wed, 16 Apr 2025 11:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. Affected is an unknown function of the file /edit_fpatient.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |
Title | code-projects Patient Record Management System edit_fpatient.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-04-16T11:00:09.838Z
Updated: 2025-04-16T14:36:56.308Z
Reserved: 2025-04-16T01:15:33.529Z
Link: CVE-2025-3685

No data.

Status : Analyzed
Published: 2025-04-16T11:15:43.740
Modified: 2025-05-28T21:09:35.543
Link: CVE-2025-3685

No data.