CVE-2024-42561: KRISHNA9772 Pharmacy Management System

High severity, CVSS 8.8. EPSS: 9% chance of exploitation in the next 30 days.

Pharmacy Management System commit a2efc8 was discovered to contain a SQL injection vulnerability via the invoice_number parameter at sales_report.php.

Affected products

  • KRISHNA9772 Pharmacy Management System: up to and including 2024-03-06

Published 2024-08-20. Last modified 2026-06-17.