Description
A vulnerability has been found in SourceCodester Hospitals Patient Records Management System 1.0. This affects an unknown function of the file /admin/patients/manage_history.php. Such manipulation of the argument ID leads to sql injection. The attack may be performed from remote. The exploit has been disclosed to the public and may be used.
Problem types
Product status
Timeline
| 2026-05-23: | Advisory disclosed |
| 2026-05-23: | VulDB entry created |
| 2026-05-23: | VulDB entry last update |
Credits
wuyan-set (VulDB User)
References
vuldb.com/vuln/365319 (VDB-365319 | SourceCodester Hospitals Patient Records Management System manage_history.php sql injection)
vuldb.com/vuln/365319/cti (VDB-365319 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/submit/813022 (Submit #813022 | sourcecodester Hospital's Patient Records Management System V1.0 SQL injection)
github.com/yan-124/yan/issues/1
www.sourcecodester.com/