RULE(RULE ID:337784)

Rule General Information
Release Date: 2024-01-11
Rule Name: PHPGurukul Hospital_management_system Admin Panel SQL Injection Vulnerability (CVE-2023-7172)
Severity:
CVE ID:
Rule Protection Details
Description: A vulnerability, which was classified as critical, has been found in PHPGurukul Hospital Management System 1.0. Affected by this issue is some unknown functionality of the component Admin Dashboard. The manipulation leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-249356.
Impact: An attacker can inject arbitrary sql commands to view or change the database of the target by exploiting the vulnerability successfully.
Affected OS: Windows, Linux, Others
Reference: https://vuldb.com/
https://vuldb.com/
https://drive.google.com/file/d/11DHRUjvOF0yV24I4JlZ0X1RE4V-mcood/view
https://cxsecurity.com/cveshow/CVE-2023-7172/
Solutions
Please contact the software vendor to update the software patch.