ZeroHour

CVE-2025-64081

PoC
CVSS 3.1
9.8 critical
EPSS
<1%p34
Published
()
Modified
Description

SQL injection vulnerability in /php/api_patient_schedule.php in SourceCodester Patients Waiting Area Queue Management System v1 allows attackers to execute arbitrary SQL commands via the appointmentID parameter.

Vendors
pamzey
Products
patients waiting area queue management system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.