A vulnerability was found in itsourcecode Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /viewpaymentreport.php. Performing a manipulation of t…
Medium CVSS 6.3
Summary
A vulnerability was found in itsourcecode Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /viewpaymentreport.php. Performing a manipulation of the argument delid results in sql injection. It is possible to initiate the attack remotely. The exploit has been made public and could be used.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://github.com/Fomovet/cve/issues/7
- https://itsourcecode.com/
- https://vuldb.com/cve/CVE-2026-19973
- https://vuldb.com/submit/873161
- https://vuldb.com/vuln/391150
- https://vuldb.com/vuln/391150/cti
Timeline
- nvd_ingest NVD