Vulnerabilities > Oretnom23 > Clinic S Patient Management System

DATE CVE VULNERABILITY TITLE RISK
2024-08-04 CVE-2024-7454 SQL Injection vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
A vulnerability, which was classified as critical, has been found in SourceCodester Clinics Patient Management System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2024-07-22 CVE-2024-6969 Unspecified vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
A vulnerability was found in SourceCodester Clinics Patient Management System 1.0.
network
low complexity
oretnom23
7.5
2024-07-22 CVE-2024-6968 Unspecified vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
A vulnerability was found in SourceCodester Clinics Patient Management System 1.0.
network
low complexity
oretnom23
7.5
2023-02-25 CVE-2023-1035 Unspecified vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
A vulnerability was found in SourceCodester Clinics Patient Management System 1.0.
network
low complexity
oretnom23
8.8
2022-10-31 CVE-2022-40471 Unrestricted Upload of File with Dangerous Type vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
Remote Code Execution in Clinic's Patient Management System v 1.0 allows Attacker to Upload arbitrary php webshell via profile picture upload functionality in users.php
network
low complexity
oretnom23 CWE-434
critical
9.8
2022-09-05 CVE-2022-3122 SQL Injection vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
A vulnerability was found in SourceCodester Clinics Patient Management System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2022-09-05 CVE-2022-3120 Unspecified vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
A vulnerability classified as critical was found in SourceCodester Clinics Patient Management System.
network
low complexity
oretnom23
critical
9.8
2022-09-02 CVE-2022-36609 SQL Injection vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
Clinic's Patient Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /pms/update_patient.php.
network
low complexity
oretnom23 CWE-89
critical
9.8
2022-08-22 CVE-2022-36251 Cross-site Scripting vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
Clinic's Patient Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via patients.php.
network
low complexity
oretnom23 CWE-79
6.1
2022-08-17 CVE-2022-35117 Cross-site Scripting vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
Clinic's Patient Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via update_medicine_details.php.
network
low complexity
oretnom23 CWE-79
4.8