What is CVE-2025-69943?
CVE-2025-69943: A SQL Injection vulnerability exists in the get_doctor.php file of kishan0725 Hospital Management System 4.0 via the 'doctor' and 'specilizationid' parameters. This allows attackers to interfere with database queries. It is recommended to isolate the affected system until a vendor patch is released.
Azərbaycanca: CVE-2025-69943: kishan0725 Hospital Management System 4.0-ın get_doctor.php faylında `doctor` və `specilizationid` parametrləri vasitəsilə SQL Injection zəifliyi aşkar edilib. Bu, təcavüzkara verilənlər bazasına müdaxilə etməyə imkan verir. Tərtibatçı tərəfindən düzəliş təqdim edilənə qədər təsirlənən sistemi şəbəkədən təcrid etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-89; shared vendor: kishan0725
FAQ2
Which software product is affected by CVE-2025-69943?
This vulnerability affects version 4.0 of kishan0725 Hospital Management System.
What can an attacker do by exploiting CVE-2025-69943?
An attacker can interfere with database queries by performing SQL Injection through the 'doctor' and 'specilizationid' parameters in the get_doctor.php file.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.