Vulnerability Description
SourceCodester Online Health Care System 1.0 is affected by SQL Injection which allows a potential attacker to bypass the authentication system and become an admin.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Online Health Care System Project | Online Health Care System | 1.0 |
Related Weaknesses (CWE)
References
- http://packetstormsecurity.com/files/160599/Online-Health-Card-System-1.0-SQL-InThird Party AdvisoryVDB Entry
- https://www.sourcecodester.com/php/14526/online-health-care-system-php-full-sourProductThird Party Advisory
- http://packetstormsecurity.com/files/160599/Online-Health-Card-System-1.0-SQL-InThird Party AdvisoryVDB Entry
- https://www.sourcecodester.com/php/14526/online-health-care-system-php-full-sourProductThird Party Advisory
FAQ
What is CVE-2020-28074?
CVE-2020-28074 is a vulnerability with a CVSS score of 9.8 (CRITICAL). SourceCodester Online Health Care System 1.0 is affected by SQL Injection which allows a potential attacker to bypass the authentication system and become an admin.
How severe is CVE-2020-28074?
CVE-2020-28074 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2020-28074?
Check the references section above for vendor advisories and patch information. Affected products include: Online Health Care System Project Online Health Care System.