Metrics
Affected Vendors & Products
Tue, 25 Aug 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 19 Aug 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in code-projects Hospital Information System 1.0. The impacted element is the function User::login of the file includes/users/UsersController.php of the component User Login Handler. This manipulation of the argument email causes sql injection. The attack is possible to be carried out remotely. The exploit has been published and may be used. | |
| Title | code-projects Hospital Information System User Login UsersController.php login sql injection | |
| First Time appeared |
Code-projects
Code-projects hospital Information System |
|
| Weaknesses | CWE-74 CWE-89 |
|
| CPEs | cpe:2.3:a:code-projects:hospital_information_system:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Code-projects
Code-projects hospital Information System |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-08-19T20:00:10.295Z
Updated: 2026-08-25T14:01:32.167Z
Reserved: 2026-08-19T13:50:54.707Z
Link: CVE-2026-76574
Updated: 2026-08-25T14:01:24.217Z
Status : Deferred
Published: 2026-08-19T20:17:23.830
Modified: 2026-08-25T14:16:53.667
Link: CVE-2026-76574
No data.