Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Medical Certificate Generator App Project Subscribe
Filtered by product Medical Certificate Generator App
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-1006 1 Medical Certificate Generator App Project 1 Medical Certificate Generator App 2023-03-02 N/A 5.4 MEDIUM
A vulnerability was found in SourceCodester Medical Certificate Generator App 1.0. It has been classified as problematic. This affects an unknown part of the component New Record Handler. The manipulation of the argument Firstname/Middlename/Lastname/Suffix/Nationality/Doctor Fullname/Doctor Suffix with the input "><script>prompt(1)</script> leads to cross site scripting. It is possible to initiate the attack remotely. The associated identifier of this vulnerability is VDB-221739.
CVE-2023-0774 1 Medical Certificate Generator App Project 1 Medical Certificate Generator App 2023-02-16 N/A 9.8 CRITICAL
A vulnerability has been found in SourceCodester Medical Certificate Generator App 1.0 and classified as critical. This vulnerability affects unknown code of the file action.php. The manipulation of the argument lastname leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-220558 is the identifier assigned to this vulnerability.
CVE-2023-0707 1 Medical Certificate Generator App Project 1 Medical Certificate Generator App 2023-02-15 N/A 9.8 CRITICAL
A vulnerability was found in SourceCodester Medical Certificate Generator App 1.0. It has been rated as critical. Affected by this issue is the function delete_record of the file function.php. The manipulation of the argument id leads to sql injection. VDB-220346 is the identifier assigned to this vulnerability.
CVE-2023-0706 1 Medical Certificate Generator App Project 1 Medical Certificate Generator App 2023-02-14 N/A 8.8 HIGH
A vulnerability, which was classified as critical, has been found in SourceCodester Medical Certificate Generator App 1.0. Affected by this issue is some unknown functionality of the file manage_record.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The identifier of this vulnerability is VDB-220340.