What is CVE-2025-65340?
CVE-2025-65340: A SQL Injection vulnerability exists in the `/betweendates-detailsreports.php` file of kishan0725 Hospital Management System 4.0. This flaw could allow an unauthenticated remote attacker to gain unauthorized access to the database, potentially reading, modifying, or deleting sensitive data. The affected system should be patched immediately or temporarily taken offline until an official vendor fix is provided.
Azərbaycanca: CVE-2025-65340: kishan0725 Hospital Management System 4.0 proqramının `/betweendates-detailsreports.php` faylında SQL Injection zəifliyi aşkar edilib. Bu zəiflik autentifikasiya olunmamış uzaq təcavüzkara verilənlər bazasına icazəsiz giriş əldə etməyə, həssas verilənləri oxumağa, dəyişdirməyə və ya silməyə imkan verə bilər. Təsirə məruz qalan sistem dərhal yamaq edilməli və ya rəsmi vendor tərəfindən düzəliş təmin edilənə qədər müvəqqəti aradan qaldırılmalıdır.
Related CVEs
link basis: same weakness class CWE-89; shared vendor: kishan0725
FAQ2
Which system is affected by CVE-2025-65340?
The CVE-2025-65340 vulnerability affects version 4.0 of the kishan0725 Hospital Management System.
What can an unauthenticated remote attacker potentially do by exploiting CVE-2025-65340?
This vulnerability could allow an unauthenticated remote attacker to gain unauthorized access to the database, potentially reading, modifying, or deleting sensitive data.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.