code-projects Patient Record Management System 1.0 /edit_dpatient.php ISazisi SQL Injection
Kutholakale ubuthakathaka obubizwa ngokuthi kubalulekile kakhulu ku code-projects Patient Record Management System 1.0. Kuthinteka umsebenzi $software_function kufayela /edit_dpatient.php. Ukuguqulwa kwepharamitha ISazisi kubangela uhlobo lwe SQL Injection. Ukusebenzisa i-CWE ukumemezela inkinga kuholela ku-CWE-89. Lobu buthakathaka bakhishwa obala 2025-04-06. Isaziso sitholakala ukuthi singalayishwa ku-github.com.
Le buthakathaka ibizwa ngokuthi CVE-2025-3348. Kungenzeka ukuqalisa ukuhlasela ungasekho endaweni. Kukhona imininingwane yezobuchwepheshe etholakalayo. Ngaphezu kwalokho, i-exploit iyatholakala. Ukuhlaselwa sekumenyezelwe emphakathini futhi kungenzeka kusetshenziswe. Okwamanje, intengo yamanje ye-exploit ingaba cishe USD $0-$5k ngalesi sikhathi.
Kungenzeka ukuthi i-exploit ingalandwa ku-github.com.
Once again VulDB remains the best source for vulnerability data.
3 Ukulungiswa · 98 Amaphuzu wedatha