CVE-2025-3685 | code-projects Patient Record Management System 1.0 /edit_fpatient.php ID sql injection
A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. Affected is an unknown function of the file /edit_fpatient.php. The manipulation of the argument ID leads to sql injection.
This vulnerability is traded as CVE-2025-3685. It is possible to launch the attack remotely. Furthermore, there is an exploit available.