CVE-2018-18705

PhpTpoint hospital management system suffers from multiple SQL injection vulnerabilities via the index.php user parameter associated with LOGIN.php, or the rno parameter to ALIST.php, DUNDEL.php, PDEL.php, or PUNDEL.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:phptpoint:hospital_management_system:1.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2018-10-29 12:29

Updated : 2023-12-10 12:44


NVD link : CVE-2018-18705

Mitre link : CVE-2018-18705

CVE.ORG link : CVE-2018-18705


JSON object : View

Products Affected

phptpoint

  • hospital_management_system
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')