Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-81375
HistoryApr 02, 2022 - 12:00 a.m.

Hospital Management System File Upload Vulnerability (CNVD-2022-81375)

2022-04-0200:00:00
China National Vulnerability Database
www.cnvd.org.cn
8
php
mysql
file upload
validation
treatment record
arbitrary code execution
vulnerability

EPSS

0.002

Percentile

62.0%

Hospital Management System is a PHP and MySQL-based hospital management system. v1.0 of Hospital Management System is vulnerable to a file upload vulnerability that results from a lack of validation of uploaded files in treatmentrecord.php. An attacker could exploit this vulnerability to upload malicious files to remotely execute arbitrary code.

EPSS

0.002

Percentile

62.0%

Related for CNVD-2022-81375