Hospital Management System v1.0 is affected by an unrestricted upload of dangerous file type vulerability in treatmentrecord.php. To exploit, an attacker can upload any PHP file, and then execute it.
References
Link | Resource |
---|---|
https://github.com/kabirkhyrul/HMS/discussions/6 | Exploit Issue Tracking Third Party Advisory |
https://github.com/kabirkhyrul/HMS/discussions/6 | Exploit Issue Tracking Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 06:49
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/kabirkhyrul/HMS/discussions/6 - Exploit, Issue Tracking, Third Party Advisory |
Information
Published : 2022-03-31 11:15
Updated : 2024-11-21 06:49
NVD link : CVE-2022-24136
Mitre link : CVE-2022-24136
CVE.ORG link : CVE-2022-24136
JSON object : View
Products Affected
hospital_management_system_project
- hospital_management_system
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type