A vulnerability was found in projectworlds Hospital Database Management System 1.0. It has been classified as critical. This affects an unknown part of the file /medicines_info.php. The manipulation of the argument Med_ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
References
Link | Resource |
---|---|
https://github.com/3169417664/cve/issues/1 | Exploit Issue Tracking Third Party Advisory |
https://vuldb.com/?ctiid.309039 | Permissions Required VDB Entry |
https://vuldb.com/?id.309039 | Third Party Advisory VDB Entry |
https://vuldb.com/?submit.570855 | Third Party Advisory VDB Entry |
Configurations
History
28 May 2025, 14:26
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-16 03:15
Updated : 2025-05-28 14:26
NVD link : CVE-2025-4739
Mitre link : CVE-2025-4739
CVE.ORG link : CVE-2025-4739
JSON object : View
Products Affected
yugeshverma
- hospital_database_management_system