Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-77827
HistoryMay 18, 2022 - 12:00 a.m.

HMS SQL Injection Vulnerability

2022-05-1800:00:00
China National Vulnerability Database
www.cnvd.org.cn
4

0.001 Low

EPSS

Percentile

48.1%

HMS is a computer or web-based hospital management system. version 1.0 of HMS is vulnerable to SQL injection, which stems from the presence of multiple parameters that can lead to SQL injection when requesting appointment.php using the POST method. An attacker could use this vulnerability to obtain database information.

CPENameOperatorVersion
hms hmseq1.0

0.001 Low

EPSS

Percentile

48.1%

Related for CNVD-2022-77827