Hospital Management System v1.0 is affected by an unrestricted upload of dangerous file type vulerability in treatmentrecord.php. To exploit, an attacker can upload any PHP file, and then execute it.
References
Link | Resource |
---|---|
https://github.com/kabirkhyrul/HMS/discussions/6 | Exploit Issue Tracking Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2022-03-31 04:15
Updated : 2022-04-07 18:54
NVD link : CVE-2022-24136
Mitre link : CVE-2022-24136
JSON object : View
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
Products Affected
hospital_management_system_project
- hospital_management_system