CVE-2023-1151EPSS p49.6%
CVE-2023-1151CVE-2023-1151
electronic_medical_records_system_project / electronic_medical_records_system
Description
A vulnerability was found in SourceCodester Electronic Medical Records System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file administrator.php of the component Cookie Handler. The manipulation of the argument userid leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-222163.
Scoring
| CVSS | 6.3 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L |
| EPSS | 0.74% probability of exploitation · percentile 49.6% · 2026-06-19T12:03:05Z |
| Last modified | 2026-06-17 |