Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in Sourcecodester Patient Appointment Scheduler System v1 by oretnom23, allows attackers to execute arbitrary SQL commands via the username and password fields to login.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Patient Appointment Scheduler System SQL注入漏洞
Vulnerability Description
Patient Appointment Scheduler System是Carlo Montero个人开发者的一个患者预约调度系统项目。为诊所患者或可能的患者提供了一个在线平台,以安排与医生的约会。 Patient Appointment Scheduler System v1版本存在SQL注入漏洞,该漏洞源于login.php中的用户名和密码字段缺少对于SQL数据的过滤和转义。这允许攻击者可利用该漏洞通过用户名和密码字段login.php执行任意SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A