Metrics
Affected Vendors & Products
Wed, 28 May 2025 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Code-projects
Code-projects patient Record Management System |
|
CPEs | cpe:2.3:a:code-projects:patient_record_management_system:1.0:*:*:*:*:*:*:* | |
Vendors & Products |
Code-projects
Code-projects patient Record Management System |
Fri, 02 May 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 02 May 2025 01:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. Affected is an unknown function of the file /edit_xpatient.php. The manipulation of the argument lastname leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well. | |
Title | code-projects Patient Record Management System edit_xpatient.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-02T01:31:06.560Z
Updated: 2025-05-02T16:38:54.031Z
Reserved: 2025-05-01T13:15:22.781Z
Link: CVE-2025-4197

Updated: 2025-05-02T16:36:40.218Z

Status : Analyzed
Published: 2025-05-02T02:15:17.687
Modified: 2025-05-28T16:02:23.317
Link: CVE-2025-4197

No data.