SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2025-69949

HIGH · CVSS 7.3 EPSS 0.18% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-29 · Last synced 2026-08-28

CyberRota Analysis

AI-Generated

The kishan0725 Hospital Management System 4.0 is susceptible to SQL Injection through the check_availability.php script, specifically via the emailid and email parameters. This vulnerability could allow an attacker to manipulate database queries, potentially leading to unauthorized data access or data manipulation. Organizations using this system should prioritize patching this vulnerability to protect sensitive patient information and maintain system integrity.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2025-69949
Severity
HIGH
CVSS
7.3
EPSS
0.18%

Original NVD Description

kishan0725 Hospital Management System 4.0 is vulnerable to SQL Injection in check_availability.php via the parameters emailid and email.