VendorsPamzeypatients_waiting_area_queue_management_system1.0
Vulnerabilities

Pamzey Patients Waiting Area Queue Management System 1.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

14CVEs
CVE-2025-13122
SourceCodester Patients Waiting Area Queue Management System api_patient_checkin.php getPatientAppointment sql injection
Published 2025-11-13 · Analyzed
9.8EPSS 0.004
CVE-2025-64081
SQL injection vulnerability in /php/api_patient_schedule.php in SourceCodester Patients Waiting Area Queue Management System v1 allows attackers to execute arbitrary SQL commands via the appointmentID parameter.
Published 2025-12-08 · Modified
9.8EPSS 0.004
CVE-2025-13248
SourceCodester Patients Waiting Area Queue Management System api_patient_schedule.php sql injection
Published 2025-11-16 · Analyzed
9.8EPSS 0.004
CVE-2026-3724
SourceCodester Patients Waiting Area Queue Management System checkin.php improper authorization
Published 2026-03-08 · Analyzed
8.8EPSS 0.005
CVE-2026-1148
SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System cross-site request forgery
Published 2026-01-19 · Analyzed
6.5EPSS 0.002
CVE-2025-63718
A SQL injection vulnerability exists in the SourceCodester PQMS (Patient Queue Management System) 1.0 in the api_patient_schedule.php endpoint. The appointmentID parameter is not properly sanitized, allowing attackers to execute arbitrary SQL commands.
Published 2025-11-07 · Analyzed
6.5EPSS 0.002
CVE-2026-2149
SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System appointments.php cross site scripting
Published 2026-02-08 · Analyzed
6.1EPSS 0.004
CVE-2026-2150
SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System checkin.php cross site scripting
Published 2026-02-08 · Analyzed
6.1EPSS 0.004
CVE-2026-2154
SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System Patient Registration registration.php cross site scripting
Published 2026-02-08 · Analyzed
6.1EPSS 0.003
CVE-2026-3817
SourceCodester Patients Waiting Area Queue Management System patient-search.php improper authorization
Published 2026-03-09 · Analyzed
5.5EPSS 0.006
CVE-2026-3171
SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System queue.php cross site scripting
Published 2026-02-25 · Analyzed
5.4EPSS 0.003
CVE-2026-1147
SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System api_patient_schedule.php cross site scripting
Published 2026-01-19 · Analyzed
5.4EPSS 0.003
CVE-2026-1146
SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System api_register_patient.php cross site scripting
Published 2026-01-19 · Analyzed
5.4EPSS 0.002
CVE-2026-3170
SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System patient-search.php cross site scripting
Published 2026-02-25 · Analyzed
4.8EPSS 0.004