CVE-2024-46238: Phpgurukul Hospital Management System

Medium severity, CVSS 5.9. EPSS: 0.3% chance of exploitation in the next 30 days.

Multiple Cross Site Scripting (XSS) vulnerabilities exist in PHPGurukul Hospital Management System 4.0 via the docname parameter in /admin/add-doctor.php and /admin/edit-doctor.php

Affected products

  • Phpgurukul Hospital Management System: version 4.0 only

Published 2024-10-21. Last modified 2026-06-17.