PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\user-login.php. Remote unauthenticated users can exploit the vulnerability to obtain sensitive database information.
id: CVE-2020-22165
info:
name: PHPGurukul Hospital Management System 4.0 - SQL Injection
author
...