All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2026-19894
LOWpublished 2026-08-15 13:17 UTC · 3 days ago
2.1
CVSS / 10
// description
A security flaw has been discovered in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /viewmedicine.php. Performing a manipulation of the argument delid results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks.
// weaknesses (CWE)
- CWE-74
- CWE-89