cbcvebase.

Code-Projects Online Hospital Management System vulnerabilities

6 known vulnerabilities affecting code-projects/online_hospital_management_system.

Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM2LOW1

Vulnerabilities

Page 1 of 1
CVE-2026-10186P3HIGHCVSS 7.3v1.02026-05-31
CVE-2026-10186 [HIGH] CWE-74 CVE-2026-10186: A security vulnerability has been detected in code-projects Online Hospital Management System 1.0. A A security vulnerability has been detected in code-projects Online Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /patient.php. Such manipulation of the argument editid leads to sql injection. The attack can be executed remotely. The exploit has been disclosed publicly and may be used.
nvd
CVE-2026-7632P3HIGHCVSS 7.3v1.02026-05-02
CVE-2026-7632 [HIGH] CWE-74 CVE-2026-7632: A vulnerability was determined in code-projects Online Hospital Management System 1.0. This affects A vulnerability was determined in code-projects Online Hospital Management System 1.0. This affects an unknown function of the file /viewappointment.php. This manipulation of the argument delid causes sql injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.
nvd
CVE-2026-10208P3HIGHCVSS 7.3v1.php2026-06-01
CVE-2026-10208 [HIGH] CWE-74 CVE-2026-10208: A flaw has been found in code-projects Online Hospital Management System 1.php. This impacts the fun A flaw has been found in code-projects Online Hospital Management System 1.php. This impacts the function login_user of the file login_1.php. Executing a manipulation of the argument Username can lead to sql injection. The attack can be executed remotely. The exploit has been published and may be used.
nvd
CVE-2026-10209P3MEDIUMCVSS 6.3v1.02026-06-01
CVE-2026-10209 [MEDIUM] CWE-74 CVE-2026-10209: A vulnerability has been found in code-projects Online Hospital Management System 1.0. Affected is a A vulnerability has been found in code-projects Online Hospital Management System 1.0. Affected is an unknown function of the file appointmentdetail.php of the component Appointment Handler. The manipulation of the argument editid leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public a
nvd
CVE-2026-7631P4MEDIUMCVSS 5.4v1.02026-05-02
CVE-2026-7631 [MEDIUM] CWE-266 CVE-2026-7631: A vulnerability was found in code-projects Online Hospital Management System 1.0. The impacted eleme A vulnerability was found in code-projects Online Hospital Management System 1.0. The impacted element is an unknown function of the component Registration Handler. The manipulation of the argument Username results in improper authorization. The attack can be executed remotely. The exploit has been made public and could be used.
nvd
CVE-2026-10299P4LOWCVSS 3.8v1.02026-06-01
CVE-2026-10299 [LOW] CWE-99 CVE-2026-10299: A weakness has been identified in code-projects Online Hospital Management System 1.0. This issue af A weakness has been identified in code-projects Online Hospital Management System 1.0. This issue affects some unknown processing of the file viewdoctortimings.php. This manipulation of the argument delid causes improper control of resource identifiers. The attack can be initiated remotely. The exploit has been made available to the public and could be
nvd
Code-Projects Online Hospital Management System vulnerabilities | cvebase