CVE-2018-18705

PhpTpoint hospital management system suffers from multiple SQL injection vulnerabilities via the index.php user parameter associated with LOGIN.php, or the rno parameter to ALIST.php, DUNDEL.php, PDEL.php, or PUNDEL.php.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:phptpoint:hospital_management_system:1.0:*:*:*:*:*:*:*

Information

Published : 2018-10-29 05:29

Updated : 2018-12-04 11:02


NVD link : CVE-2018-18705

Mitre link : CVE-2018-18705


JSON object : View

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Advertisement

dedicated server usa

Products Affected

phptpoint

  • hospital_management_system