CVE-2026-3817: Pamzey Patients Waiting Area Queue Management System

Medium severity, CVSS 5.3. EPSS: 0.6% chance of exploitation in the next 30 days.

A vulnerability was detected in SourceCodester Patients Waiting Area Queue Management System 1.0. This issue affects some unknown processing of the file /patient-search.php. The manipulation results in improper authorization. The attack can be launched remotely. The exploit is now public and may be used.

Affected products

  • Pamzey Patients Waiting Area Queue Management System: version 1.0 only

Published 2026-03-09. Last modified 2026-06-17.