ZeroHour

CVE-2024-28320

PoC ×2
CVSS 3.1
7.6 high
EPSS
<1%p43
Published
()
Modified
Description

Insecure Direct Object References (IDOR) vulnerability in Hospital Management System 1.0 allows attackers to manipulate user parameters for unauthorized access and modifications via crafted POST request to /patient/edit-user.php.

Vendors
mayurik
Products
hospital management system
Weakness
CWE-639
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:L

In the news

No ingested article mentions this CVE yet.