A weakness has been identified in code-projects Online Hospital Management System 1.0. This issue affects some unknown processing of the…
VulDB·CWE-99·Published 2026-06-01
A weakness has been identified in code-projects Online Hospital Management System 1.0. This issue affects some unknown processing of the file viewdoctortimings.php. This manipulation of the argument delid causes improper control of resource identifiers. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks.
A weakness has been identified in code-projects Online Hospital Management System 1.0. This issue affects some unknown processing of the file viewdoctortimings.php. This manipulation of the argument delid causes improper control of resource identifiers. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks.
Se ha identificado una debilidad en el Sistema de Gestión Hospitalaria en Línea 1.0 de code-projects. Este problema afecta a algún procesamiento desconocido del archivo viewdoctortimings.php. Esta manipulación del argumento delid causa un control inadecuado de los identificadores de recursos. El ataque puede iniciarse remotamente. El exploit se ha puesto a disposición del público y podría usarse para ataques.
| Version | Type | Source | Base | Exp | Impact | Vector |
|---|---|---|---|---|---|---|
| 2.0 | Primary | cve.org | 4.7 | — | — | AV:N/AC:L/Au:M/C:N/I:P/A:P/E:POC/RL:ND/RC:UR |
| 2.0 | Primary | cve.org | 4.7 | — | — | AV:N/AC:L/Au:M/C:N/I:P/A:P/E:POC/RL:ND/RC:UR |
| 2.0 | Secondary | NVD | 4.7 | 6.4 | 4.9 | AV:N/AC:L/Au:M/C:N/I:P/A:P |
| 3.0 | Primary | cve.org | 3.8 | — | — | CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:L/E:P/RL:X/RC:R |
| 3.0 | Primary | cve.org | 3.8 | — | — | CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:L/E:P/RL:X/RC:R |
| 3.1 | Primary | NVD | 3.8 | 1.2 | 2.5 | CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:L |
| 3.1 | Primary | cve.org | 3.8 | — | — | CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:L/E:P/RL:X/RC:R |
| 3.1 | Primary | cve.org | 3.8 | — | — | CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:L/E:P/RL:X/RC:R |
| 3.1 | Secondary | NVD | 3.8 | 1.2 | 2.5 | CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:L |
| 4.0 | Primary | cve.org | 5.1 | — | — | CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:P |
| 4.0 | Primary | cve.org | 5.1 | — | — | CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:P |
| 4.0 | Secondary | NVD | 2.0 | — | — | CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X |