CVE-2025-13122High· 7.3▾ TwilightA vulnerability was detected in SourceCodester Patients Waiting Area Queue Management System 1.0. The affected element is the function getPatientAppointment of the file /php/api_patient_checkin.php. Performing manipulation of the argumen…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 40.2 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.4%
A vulnerability was detected in SourceCodester Patients Waiting Area Queue Management System 1.0. The affected element is the function getPatientAppointment of the file /php/api_patient_checkin.php. Performing manipulation of the argument appointmentID results in sql injection. It is possible to initiate the attack remotely. The exploit is now public and may be used.
patients_waiting_area_queue_management_system = 1.0Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2025-13267Medium· 6.3A vulnerability was detected in SourceCodester Dental Clinic Appointment Reservation System 1.0
CVE-2025-13264Medium· 6.3A security flaw has been discovered in SourceCodester Online Magazine Management System 1.0
CVE-2025-12939Medium· 6.3A security flaw has been discovered in SourceCodester Interview Management System up to 1.0
CVE-2025-12932Medium· 4.7A vulnerability was determined in SourceCodester Baby Care System 1.0
CVE-2025-12933Medium· 6.3A vulnerability was identified in SourceCodester Baby Care System 1.0
CVE-2025-12929High· 7.3A flaw has been found in SourceCodester Survey Application System 1.0