PT-2026-26566 · Itsourcecode · Online Doctor Appointment System
Onechicken
·
Published
2026-03-20
·
Updated
2026-03-20
·
CVE-2026-4473
CVSS v2.0
5.8
Medium
| AV:N/AC:L/Au:M/C:P/I:P/A:P |
A vulnerability was detected in itsourcecode Online Doctor Appointment System 1.0. This issue affects some unknown processing of the file /admin/appointment action.php. The manipulation of the argument appointment id results in sql injection. The attack can be launched remotely. The exploit is now public and may be used.
Exploit
Fix
Special Elements Injection
SQL injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Online Doctor Appointment System