A vulnerability classified as critical was found in SourceCodester Doctors Appointment System 1.0. This vulnerability affects unknown code of the file /admin/doctors.php of the component Parameter Handler. The manipulation of the argument search/id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
| Software | From | Fixed in |
|---|---|---|
| doctors_appointment_system_project / doctors_appointment_system | 1.0 | 1.0.x |