SourceCodester Doctor Appointment System是美国SourceCodester公司的一个应用软件。提供了一个预约功能。 SourceCodester Doctors Appointment System 1.0版本存在SQL注入漏洞,该漏洞源于文件create-account.php 中存在安全问题, 通过参数newemail导致 sql 注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SourceCodester | Doctors Appointment System | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-1063 | 6.3 MEDIUM | SourceCodester Doctors Appointment System Parameter patient.php sql injection |
| CVE-2023-1062 | 6.3 MEDIUM | SourceCodester Doctors Appointment System Parameter add-new.php sql injection |
| CVE-2023-1061 | 6.3 MEDIUM | SourceCodester Doctors Appointment System edit-doc.php sql injection |
| CVE-2023-1059 | 6.3 MEDIUM | SourceCodester Doctors Appointment System Parameter doctors.php sql injection |
| CVE-2023-1056 | 6.3 MEDIUM | SourceCodester Doctors Appointment System patient.php sql injection |
| CVE-2023-1057 | 5.5 MEDIUM | SourceCodester Doctors Appointment System login.php edoc sql injection |
| CVE-2023-1054 | 4.7 MEDIUM | SourceCodester Music Gallery Site sql injection |
| CVE-2023-1053 | 4.7 MEDIUM | SourceCodester Music Gallery Site view_category.php sql injection |
No comments yet