Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 04 Sep 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in code-projects Hospital Information System 1.0. This impacts the function findBySearch of the file addReq.php. This manipulation of the argument Search causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized. | |
| Title | code-projects Hospital Information System addReq.php findBySearch sql injection | |
| First Time appeared |
Code-projects
Code-projects hospital Information System |
|
| Weaknesses | CWE-74 CWE-89 |
|
| CPEs | cpe:2.3:a:code-projects:hospital_information_system:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Code-projects
Code-projects hospital Information System |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-09-04T02:00:15.087Z
Reserved: 2026-09-03T18:12:26.933Z
Link: CVE-2026-85397
No data.
Status : Received
Published: 2026-09-04T02:17:20.363
Modified: 2026-09-04T02:17:20.363
Link: CVE-2026-85397
No data.
OpenCVE Enrichment
No data.
