CVE-2023-41528: KISHAN0725 Hospital Management System

Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Hospital Management System v4 was discovered to contain multiple SQL injection vulnerabilities in contact.php via the txtname, txtphone, and txtmail parameters.

Affected products

  • KISHAN0725 Hospital Management System: version 4.0 only

Published 2025-08-07. Last modified 2026-06-17.