Description
A vulnerability was detected in SourceCodester Simple Doctors Appointment System 1.0. This affects an unknown part of the file /admin/login.php. The manipulation of the argument Username results in sql injection. The attack can be executed remotely. The exploit is now public and may be used.
Problem types
Product status
Timeline
| 2026-03-30: | Advisory disclosed |
| 2026-03-30: | VulDB entry created |
| 2026-03-30: | VulDB entry last update |
Credits
dyh18 (VulDB User)
References
vuldb.com/vuln/354247 (VDB-354247 | SourceCodester Simple Doctors Appointment System login.php sql injection)
vuldb.com/vuln/354247/cti (VDB-354247 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/submit/780353 (Submit #780353 | SourceCodester Simple Doctor's Appointment System 1.0 SQL Injection)
github.com/dyh1213-wq/cve/issues/3
www.sourcecodester.com/