A weakness has been identified in SourceCodester Patients Waiting Area Queue Management System 1.0. The impacted element is an unknown function of the file /php/api_patient_schedule.php. This manipulation of the argument appointmentID causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited.
Metrics
Affected Vendors & Products
References
History
Mon, 17 Nov 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sourcecodester
Sourcecodester patients Waiting Area Queue Management System |
|
| Vendors & Products |
Sourcecodester
Sourcecodester patients Waiting Area Queue Management System |
Sun, 16 Nov 2025 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in SourceCodester Patients Waiting Area Queue Management System 1.0. The impacted element is an unknown function of the file /php/api_patient_schedule.php. This manipulation of the argument appointmentID causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited. | |
| Title | SourceCodester Patients Waiting Area Queue Management System api_patient_schedule.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-11-16T11:02:06.412Z
Updated: 2025-11-16T11:02:06.412Z
Reserved: 2025-11-15T14:57:15.870Z
Link: CVE-2025-13248
No data.
Status : Received
Published: 2025-11-16T11:15:43.167
Modified: 2025-11-16T11:15:43.167
Link: CVE-2025-13248
No data.
ReportizFlow