PT-2026-26566 · Itsourcecode · Online Doctor Appointment System

Onechicken

·

Published

2026-03-20

·

Updated

2026-03-20

·

CVE-2026-4473

CVSS v2.0

5.8

Medium

AV:N/AC:L/Au:M/C:P/I:P/A:P
A vulnerability was detected in itsourcecode Online Doctor Appointment System 1.0. This issue affects some unknown processing of the file /admin/appointment action.php. The manipulation of the argument appointment id results in sql injection. The attack can be launched remotely. The exploit is now public and may be used.

Exploit

Fix

Special Elements Injection

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2026-4473

Affected Products

Online Doctor Appointment System