SQL Injection Vulnerability in Hospital Management System by Kishan0725
CVE-2023-40992
6.5MEDIUM
What is CVE-2023-40992?
The Hospital Management System 4, developed by Kishan0725, is susceptible to a SQL injection attack through the 'password2' parameter in the func.php file. This vulnerability could allow malicious actors to manipulate database queries, potentially leading to unauthorized access to sensitive information. It emphasizes the importance of input validation and secure coding practices to protect user data in web applications.
