An arbitrary file upload vulnerability in the component /jquery-file-upload/server/php/index.php of Hospital Management System v4.0 allows an unauthenticated attacker to upload any file to the server and execute arbitrary code.
CVSS
No CVSS.
References
Configurations
History
14 May 2025, 13:14
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:kishan0725:hospital_management_system:4.0:*:*:*:*:*:*:* | |
First Time |
Kishan0725
Kishan0725 hospital Management System |
|
References | () https://flashy-lemonade-192.notion.site/Unauthenticated-arbitrary-file-upload-via-jQuery-File-Upload-in-Hospital-Management-System-3c02c1e8ef65432686321fcbad78bb1e?pvs=4 - Exploit, Third Party Advisory | |
References | () https://flashy-lemonade-192.notion.site/Unauthenticated-arbitrary-file-upload-via-jQuery-File-Upload-in-Hospital-Management-System-3c02c1e8ef65432686321fcbad78bb1e - Exploit, Third Party Advisory |
22 Apr 2025, 18:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-04-22 18:15
Updated : 2025-05-14 13:14
NVD link : CVE-2023-43958
Mitre link : CVE-2023-43958
JSON object : View
Products Affected
kishan0725
- hospital_management_system
CWE
No CWE.