Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-40471


Remote Code Execution in Clinic's Patient Management System v 1.0 allows Attacker to Upload arbitrary php webshell via profile picture upload functionality in users.php


Published

2022-10-31T16:15:12.017

Last Modified

2025-05-06T16:15:25.590

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-434
  • Type: Secondary
    CWE-434

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application oretnom23 clinic\'s_patient_management_system 1.0 Yes

References