Sourcecodesterk Doctor Appointment System是 Sourcecodesterk开源的一个应用软件。提供了一个预约功能。 Doctor Appointment System version 1.0 存在SQL注入漏洞,该漏洞源于姓名和电子邮件参数方面存在远程盲SQL注入漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Blind SQL injection in contactus.php in Doctor Appointment System 1.0 allows an unauthenticated attacker to insert malicious SQL queries via firstname parameter. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2021/CVE-2021-27320.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2020-36283 | 9.6 CRITICAL | HID Global OMNIKEY 跨站请求伪造漏洞 |
| CVE-2021-27315 | Sourcecodesterk Doctor Appointment System SQL注入漏洞 | |
| CVE-2021-28967 | Xavier Hahn vscode-matlab 默认配置问题漏洞 | |
| CVE-2021-29133 | Alpine Linux 安全漏洞 | |
| CVE-2021-29025 | Bitweaver 跨站脚本漏洞 | |
| CVE-2021-29026 | Bitweaver 跨站脚本漏洞 | |
| CVE-2021-29027 | Bitweaver 跨站脚本漏洞 | |
| CVE-2021-29028 | Bitweaver 跨站脚本漏洞 | |
| CVE-2021-29029 | Bitweaver 跨站脚本漏洞 | |
| CVE-2021-29030 | Bitweaver 跨站脚本漏洞 | |
| CVE-2021-29031 | Bitweaver 跨站脚本漏洞 | |
| CVE-2021-29032 | Bitweaver 跨站脚本漏洞 | |
| CVE-2021-29033 | Bitweaver 跨站脚本漏洞 | |
| CVE-2020-15809 | SpinetiX SpinetiX 路径遍历漏洞 | |
| CVE-2021-27316 | Sourcecodesterk Doctor Appointment System SQL注入漏洞 | |
| CVE-2021-27319 | Sourcecodesterk Doctor Appointment System SQL注入漏洞 | |
| CVE-2021-28362 | Contiki 数字错误漏洞 | |
| CVE-2021-29002 | Plone 跨站脚本漏洞 | |
| CVE-2019-19349 | Red Hat OpenShift Container Platform 安全漏洞 | |
| CVE-2019-19350 | Red Hat OpenShift Container Platform 安全漏洞 |
Showing top 20 of 25 CVEs. View all on vendor page → →
No comments yet