SourceCodester Doctors Appointment System是SourceCodester开源的一个医生预约系统。 SourceCodester Doctors Appointment System 1.0版本存在注入漏洞,该漏洞源于对文件/admin/delete-appointment.php中参数ID的错误操作导致SQL注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Sourcecodester | Doctor's Appointment System | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2025-4816 | 7.3 HIGH | SourceCodester Doctor's Appointment System GET Parameter appointment.php sql injection |
| CVE-2025-4818 | 7.3 HIGH | SourceCodester Doctor's Appointment System GET Parameter delete-doctor.php sql injection |
No comments yet