


Perceptive Security
SOC/SIEM Consultancy

A weakness has been identified in SourceCodester Hospitals Patient Records Management System 1.0. Affected is an unknown function of the file /classes/Users.php…
Published:
30 May 2026 at 22:00:00
Alert date:
31 May 2026 at 15:01:43
Source:
nvd.nist.gov
Web Technologies, Enterprise Applications
A SQL injection vulnerability has been identified in SourceCodester Hospitals Patient Records Management System version 1.0. The vulnerability affects an unknown function in the file /classes/Users.php?f=save through manipulation of the ID argument. The vulnerability allows for remote exploitation and a public exploit is available, making it particularly dangerous. This affects healthcare record management systems which contain sensitive patient data.
Technical details
Mitigation steps:
Affected products:
SourceCodester Hospitals Patient Records Management System
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-10185
https://github.com/zzb1388/cve2/issues/3
https://vuldb.com/cve/CVE-2026-10185
https://vuldb.com/submit/819918
https://vuldb.com/vuln/367466
https://vuldb.com/vuln/367466/cti
https://www.sourcecodester.com/
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
