CNNVD-202507-783 Information

CNNVD ID

CNNVD-202507-783

CVE-2025-7147

  • CNNVD Published: 2025-07-07

Description (Chinese)

CodeAstro Patient Record Management System是CodeAstro公司的一个病历管理系统。 CodeAstro Patient Record Management System 1.0版本存在注入漏洞,该漏洞源于对文件/login.php中参数uname的错误操作导致SQL注入。

Description (English)

CodeAstro Patient Reform Management System is a medical records management system for CodeAstro. The CodeAstro Manual System Version 1.0 had an injection loophole, which resulted from an error in the uname of the parameters in the document/login.php.

Hazard Level

Medium

Vulnerability Type

注入

Affected Vendor

CodeAstro

Published

2025-07-07

Last Modified

2026-02-24

References

https://vuldb.com/?submit.606026 https://vuldb.com/?ctiid.315085 https://codeastro.com/ https://github.com/Vanshdhawan188/Patient-Record-Management-System-SQL/blob/main/Patient%20Record%20Management%20System.md https://vuldb.com/?id.315085 https://access.redhat.com/security/cve/cve-2025-7147

Share on: