CVE-2022-48120: Hospital Management System Project Hospital Management System
Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.
SQL Injection vulnerability in kishan0725 Hospital Management System thru commit 4770d740f2512693ef8fd9aa10a8d17f79fad9bd (on March 13, 2021), allows attackers to execute arbitrary commands via the contact and doctor parameters to /search.php.
Affected products
- Hospital Management System Project Hospital Management System: up to and including 2021-03-13
Published 2023-01-20. Last modified 2026-06-17.