A vulnerability was determined in code-projects Hospital Information System 1.0. This impacts the function findBySearch of the file addReq.php. This manipulation of the argument Search causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.
Metrics
Affected Vendors & Products
References
History
Fri, 04 Sep 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in code-projects Hospital Information System 1.0. This impacts the function findBySearch of the file addReq.php. This manipulation of the argument Search causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized. | |
| Title | code-projects Hospital Information System addReq.php findBySearch sql injection | |
| First Time appeared |
Code-projects
Code-projects hospital Information System |
|
| Weaknesses | CWE-74 CWE-89 |
|
| CPEs | cpe:2.3:a:code-projects:hospital_information_system:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Code-projects
Code-projects hospital Information System |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-09-04T02:00:15.087Z
Updated: 2026-09-04T02:00:15.087Z
Reserved: 2026-09-03T18:12:26.933Z
Link: CVE-2026-85397
No data.
Status : Received
Published: 2026-09-04T02:17:20.363
Modified: 2026-09-04T02:17:20.363
Link: CVE-2026-85397
No data.