SQL Injection Vulnerability in Hospital Management System by Kishan0725
CVE-2022-24646
7.5HIGH
What is CVE-2022-24646?
A SQL injection vulnerability has been identified in the Hospital Management System v4.0, specifically in the contact.php file through the txtMsg parameters. This flaw enables attackers to manipulate SQL queries, potentially compromising sensitive data within the system. Organizations using this software should assess their exposure and take the necessary steps to mitigate the risks associated with this vulnerability.