CVE-2026-13548

CVE-2026-13548CVE-2026-13548

Description

A vulnerability was identified in itsourcecode Hospital Management System 1.0. Impacted is an unknown function of the file /doctortimings.php. The manipulation of the argument editid leads to sql injection. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

Scoring

CVSS 6.3 ()
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Last modified2026-06-29
Sourced from NVD. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.