CVE-2026-3981 | itsourcecode Online Doctor Appointment System 1.0 /admin/doctor_action.php ID sql injection
A vulnerability identified as critical has been detected in itsourcecode Online Doctor Appointment System 1.0. Affected is an unknown function of the file /admin/doctor_action.php. Performing a manipulation of the argument ID results in sql injection.
This vulnerability is known as CVE-2026-3981. Remote exploitation of the attack is possible. Furthermore, an exploit is available.