SQL Injection Vulnerability in Hospital Management System 4.0
CVE-2025-69949
7.3HIGH
What is CVE-2025-69949?
The Hospital Management System 4.0 by kishan0725 is exposed to a significant SQL Injection vulnerability through the check_availability.php script. This flaw allows unauthorized users to manipulate SQL queries by exploiting the emailid and email parameters, potentially leading to unauthorized access to sensitive data and affecting overall system integrity.
