6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A security vulnerability has been detected in SourceCodester Eye Clinic Management System 1.0. Affected by this issue is some unknown functionality of the file /main/search_index_Diagnosis.php. Such manipulation of the argument Search leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.
Basic Information
ID
CVE-2025-9771
Source
VulDB
Published
Sep 1, 2025 at 09:02
Affected Product
Vendor
SourceCodester
Product
Eye Clinic Management System
Version
1.0
Affected Versions
SourceCodester Eye Clinic Management System 1.0