Code-Projects E-Health Care System vulnerabilities

10 known vulnerabilities affecting code-projects/e-health_care_system.

Total CVEs
10
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM10

Vulnerabilities

Page 1 of 1
CVE-2024-10989MEDIUMCVSS 5.3v1.02024-11-08
CVE-2024-10989 [MEDIUM] CWE-74 CVE-2024-10989: A vulnerability classified as critical has been found in code-projects E-Health Care System 1.0. Thi A vulnerability classified as critical has been found in code-projects E-Health Care System 1.0. This affects an unknown part of the file /Admin/detail.php. The manipulation of the argument s_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The initial researcher
cvelistv5nvd
CVE-2024-10988MEDIUMCVSS 6.9v1.02024-11-08
CVE-2024-10988 [MEDIUM] CWE-74 CVE-2024-10988: A vulnerability was found in code-projects E-Health Care System 1.0. It has been rated as critical. A vulnerability was found in code-projects E-Health Care System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /Doctor/doctor_login.php. The manipulation of the argument email leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
cvelistv5nvd
CVE-2024-10987MEDIUMCVSS 5.3v1.02024-11-08
CVE-2024-10987 [MEDIUM] CWE-74 CVE-2024-10987: A vulnerability was found in code-projects E-Health Care System 1.0. It has been declared as critica A vulnerability was found in code-projects E-Health Care System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /Doctor/user_appointment.php. The manipulation of the argument schedule_id/schedule_date/schedule_day/start_time/end_time/booking leads to sql injection. The attack can be launch
cvelistv5nvd
CVE-2024-10967MEDIUMCVSS 6.9v1.02024-11-07
CVE-2024-10967 [MEDIUM] CWE-74 CVE-2024-10967: A vulnerability was found in code-projects E-Health Care System 1.0. It has been classified as criti A vulnerability was found in code-projects E-Health Care System 1.0. It has been classified as critical. Affected is an unknown function of the file /Doctor/delete_user_appointment_request.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may
cvelistv5nvd
CVE-2024-10808MEDIUMCVSS 5.3v1.02024-11-05
CVE-2024-10808 [MEDIUM] CWE-74 CVE-2024-10808: A vulnerability has been found in code-projects E-Health Care System 1.0 and classified as critical. A vulnerability has been found in code-projects E-Health Care System 1.0 and classified as critical. This vulnerability affects unknown code of the file Admin/req_detail.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
cvelistv5nvd
CVE-2024-10809MEDIUMCVSS 5.3v1.02024-11-05
CVE-2024-10809 [MEDIUM] CWE-74 CVE-2024-10809: A vulnerability was found in code-projects E-Health Care System 1.0 and classified as critical. This A vulnerability was found in code-projects E-Health Care System 1.0 and classified as critical. This issue affects some unknown processing of the file /Doctor/chat.php. The manipulation of the argument name/message leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The initial r
cvelistv5nvd
CVE-2024-10810MEDIUMCVSS 5.3v1.02024-11-05
CVE-2024-10810 [MEDIUM] CWE-74 CVE-2024-10810: A vulnerability was found in code-projects E-Health Care System 1.0. It has been classified as criti A vulnerability was found in code-projects E-Health Care System 1.0. It has been classified as critical. Affected is an unknown function of the file Doctor/app_request.php. The manipulation of the argument app_id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
cvelistv5nvd
CVE-2024-10740MEDIUMCVSS 5.3v1.02024-11-03
CVE-2024-10740 [MEDIUM] CWE-89 CVE-2024-10740: A vulnerability, which was classified as critical, was found in code-projects E-Health Care System u A vulnerability, which was classified as critical, was found in code-projects E-Health Care System up to 1.0. This affects an unknown part of the file /Admin/consulting_detail.php. The manipulation of the argument consulting_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may
cvelistv5nvd
CVE-2024-10739MEDIUMCVSS 6.9v1.02024-11-03
CVE-2024-10739 [MEDIUM] CWE-89 CVE-2024-10739: A vulnerability, which was classified as critical, has been found in code-projects E-Health Care Sys A vulnerability, which was classified as critical, has been found in code-projects E-Health Care System 1.0. Affected by this issue is some unknown functionality of the file /Admin/adminlogin.php. The manipulation of the argument email/admin_pswd as part of String leads to sql injection. The attack may be launched remotely. The exploit has been discl
cvelistv5nvd
CVE-2024-10741MEDIUMCVSS 6.9v1.02024-11-03
CVE-2024-10741 [MEDIUM] CWE-89 CVE-2024-10741: A vulnerability has been found in code-projects E-Health Care System 1.0 and classified as critical. A vulnerability has been found in code-projects E-Health Care System 1.0 and classified as critical. This vulnerability affects unknown code of the file /Users/registration.php. The manipulation of the argument f_name leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Other para
cvelistv5nvd