CVE-2026-14731: itsourcecode Hospital Management System patientreport.php sql injection
Published Jul 5, 2026
·Updated
A weakness has been identified in itsourcecode Hospital Management System 1.0. This affects an unknown part of the file /patientreport.php. Executing a manipulation of the argument editid can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.
Affected Software
1 affected component
itsourcecode Hospital Management System=1.0
Event History
Jul 5, 2026
CVE Published
via MITRE·08:30 AM
Data Sourced
via MITRE·08:30 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-14731?
The severity of CVE-2026-14731 is rated medium with a score of 6.3.
2
How do I fix CVE-2026-14731?
To fix CVE-2026-14731, ensure that user input is properly sanitized and use prepared statements to prevent SQL injection.
3
What type of vulnerability is CVE-2026-14731?
CVE-2026-14731 is classified as an SQL Injection vulnerability.
4
Can CVE-2026-14731 be exploited remotely?
Yes, CVE-2026-14731 can be exploited remotely due to its nature.
5
Which software is impacted by CVE-2026-14731?
CVE-2026-14731 affects the itsourcecode Hospital Management System version 1.0.