Lucene search

K
nvd[email protected]NVD:CVE-2022-46093
HistoryJan 13, 2023 - 10:15 p.m.

CVE-2022-46093

2023-01-1322:15:14
CWE-89
web.nvd.nist.gov
4
hospital management system
sql injection
vulnerability
administrator privileges

CVSS3

8.2

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N

AI Score

8.4

Confidence

High

EPSS

0.002

Percentile

55.3%

Hospital Management System v1.0 is vulnerable to SQL Injection. Attackers can gain administrator privileges without the need for a password.

Affected configurations

Nvd
Node
hospital_management_system_projecthospital_management_systemMatch1.0
VendorProductVersionCPE
hospital_management_system_projecthospital_management_system1.0cpe:2.3:a:hospital_management_system_project:hospital_management_system:1.0:*:*:*:*:*:*:*

CVSS3

8.2

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N

AI Score

8.4

Confidence

High

EPSS

0.002

Percentile

55.3%

Related for NVD:CVE-2022-46093