6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was identified in PHPGurukul Hospital Management System 4.0. This affects an unknown part of the file /admin/doctor-specilization.php. The manipulation of the argument doctorspecilization leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Basic Information
ID
CVE-2025-8954
Source
VulDB
Published
Aug 14, 2025 at 09:02
Affected Product
Vendor
PHPGurukul
Product
Hospital Management System
Version
4.0
Affected Versions
PHPGurukul Hospital Management System 4.0