CVE-2022-36202 Information

Description

Doctor’s Appointment System1.0 is vulnerable to Incorrect Access Control via edoc/patient/settings.php. The settings.php is affected by Broken Access Control (IDOR) via id= parameter.

Reference

https://www.sourcecodester.com/hashenudara/simple-doctors-appointment-project.html http://hshnudr.com https://github.com/aznull/CVEs

Share on: