Executive brief
The kishan0725 Hospital Management System, a platform used for managing patient records and medical facility operations, contains a security flaw in its doctor portal. An attacker can exploit this vulnerability to gain unauthorized access to the underlying database. This could lead to the theft of sensitive patient medical records, unauthorized modification of health data, or a complete compromise of the hospital's information system.
Technical details
A SQL injection vulnerability exists in kishan0725 Hospital Management System 4.0 within the '/hms/doctor/view-patient.php' endpoint. The application fails to properly sanitize the 'viewid' GET parameter before using it in a database query. An authenticated attacker with doctor-level access (or an attacker who can bypass authentication) can supply malicious SQL commands to extract sensitive information from the database, bypass security controls, or potentially gain administrative access. The vulnerability was identified via automated taint analysis. As of the advisory date, no official patch has been confirmed.
Affected products
- kishan0725 Hospital Management System 4.0
Timeline
- 2026-07-29: disclosed: Initial disclosure via NVD and MITRE