Description
SQL Injection vulnerability in OpenHIS v.1.0 allows an attacker to execute arbitrary code via the refund function in the PayController.class.php component.
Related CPE's
Could not find any relations
References
Weaknesses
134c704f-9b21-4f2e-91b3-4a467353bcc0
Secondary
CWE-89
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
9.8 · Critical
Information
Source identifier
Vulnerability status
Awaiting analysis
Published
2024-10-11T16:15:08.267Z
1 year agoLast modified
2024-10-16T16:35:05.480Z
1 year ago