CVE-2025-3348 | code-projects Patient Record Management System 1.0 /edit_dpatient.php ID sql injection (EUVD-2025-9986)
A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. Impacted is an unknown function of the file /edit_dpatient.php. Performing manipulation of the argument ID results in sql injection.
This vulnerability is identified as CVE-2025-3348. The attack can be initiated remotely. Additionally, an exploit exists.