cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-5362,https://securityvulnerability.io/vulnerability/CVE-2024-5362,SQL Injection Vulnerability in SourceCodester Online Hospital Management System,"A critical vulnerability has been identified in the SourceCodester Online Hospital Management System 1.0, specifically in the file departmentDoctor.php. This vulnerability arises from improper handling of the 'deptid' argument, enabling attackers to exploit SQL injection techniques. With this flaw, attackers can execute arbitrary SQL queries on the database, potentially compromising sensitive information and system integrity. This vulnerability is accessible for exploitation remotely and has been publicly disclosed, raising immediate concerns for organizations using this outdated software version.",Sourcecodester,Online Hospital Management System,9.8,CRITICAL,0.00044999999227002263,false,,false,false,true,2024-05-26T10:31:03.000Z,true,false,false,,2024-05-26T11:31:03.618Z,0 CVE-2023-4185,https://securityvulnerability.io/vulnerability/CVE-2023-4185,SourceCodester Online Hospital Management System patientlogin.php sql injection,"A vulnerability has been identified in the SourceCodester Online Hospital Management System 1.0, specifically in the patientlogin.php file. This security flaw allows for SQL injection via manipulation of the loginid and password parameters. Attackers can exploit this vulnerability remotely, potentially compromising the database integrity and accessing sensitive patient information. The exploit has been publicly disclosed, increasing the urgency for users to patch this critical issue to safeguard their systems.",SourceCodester,Online Hospital Management System,9.8,CRITICAL,0.0015699999639764428,false,,false,false,false,,,false,false,,2023-08-06T13:15:00.000Z,0