Hospital Management System Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 47
    Known Exploited: 0
    24
    Critical Level Threats
    5
    High Level Threats
    15
    Medium Level Threats
    3
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-57254

    An SQL injection vulnerability in user-login.php and index.php of Karthikg1908 Hospital Management System (HMS) 1.0 allows remote attackers to execute arbitrary SQL queries via the username and password POST parameters. The application fails to properly sanitize input before embedding it into SQL queries, leading to unauthorized access or potential data breaches. This can result in privilege escalation, account takeover, or exposure of sensitive medical data.

    Last Modified: Apr 15, 2026
    Published: Sep 30, 2025

    CVE-2025-47663

    WordPress Hospital Management System plugin <= 47.0(20-11-2023) - Arbitrary File Upload vulnerability

    Last Modified: Apr 28, 2026
    Published: May 23, 2025

    CVE-2024-11678

    CodeAstro Hospital Management System his_doc_register_patient.php cross site scripting

    Last Modified: Dec 04, 2024
    Published: Nov 25, 2024

    CVE-2024-11677

    CodeAstro Hospital Management System Add Vendor Details Page his_admin_add_vendor.php cross site scripting

    Last Modified: Dec 04, 2024
    Published: Nov 25, 2024

    CVE-2024-11676

    CodeAstro Hospital Management System Add Laboratory Equipment Page his_admin_add_lab_equipment.php cross site scripting

    Last Modified: Dec 04, 2024
    Published: Nov 25, 2024
    Items Per Page