CVE-2026-7632: code-projects Online Hospital Management System viewappointment.php sql injection
A vulnerability was determined in code-projects Online Hospital Management System 1.0. This affects an unknown function of the file /viewappointment.php. This manipulation of the argument delid causes sql injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-7632?
CVE-2026-7632 is a critical severity SQL injection vulnerability in the Online Hospital Management System 1.0.
How do I fix CVE-2026-7632?
To fix CVE-2026-7632, you should validate and sanitize user inputs in the viewappointment.php file to prevent SQL injection.
What impact does CVE-2026-7632 have on affected systems?
CVE-2026-7632 allows attackers to manipulate SQL queries, potentially leading to unauthorized access to sensitive data.
Which version of the Online Hospital Management System is affected by CVE-2026-7632?
CVE-2026-7632 affects version 1.0 of the Online Hospital Management System.
Is there a patch available for CVE-2026-7632?
Currently, there is no official patch available for CVE-2026-7632, so immediate code modifications are recommended to mitigate the risk.