Yashh-G/zero-day-research

Yashh-G/zero-day-research

Releases0
Stars1
This repository serves as my dedicated research hub for zero-day vulnerabilities. It contains my personal findings, proof-of-concepts (PoCs), and ongoing security research on undisclosed vulnerabilities. The goal is to document, organize, and share my journey in vulnerability discovery and exploit development.

CVE History

CVEPublishedCVSS v3CVSS v2
7.3 HIGH7.5 HIGH

A weakness has been identified in Campcodes Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/ of the component Admin Dashboard Login. This manipulation of the argument Password causes sql injection. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be exploited.

3.5 LOW4 MEDIUM

A flaw has been found in Campcodes Online Hospital Management System 1.0. The impacted element is an unknown function of the file /edit-profile.php of the component Edit Profile Page. Executing manipulation of the argument Username can lead to cross site scripting. The attack may be launched remotely. The exploit has been published and may be used.

2.4 LOW3.3 LOW

A vulnerability was detected in Campcodes Online Hospital Management System 1.0. The affected element is an unknown function of the file /admin/patient-search.php of the component Patient Search Module. Performing manipulation of the argument Search by Name Mobile No results in cross site scripting. The attack may be initiated remotely. The exploit is now public and may be used.

2.4 LOW3.3 LOW

A vulnerability was detected in Campcodes Hospital Management System 1.0. This affects an unknown function of the file /admin/edit-doctor-specialization.php of the component Edit Doctor Specialization Page. The manipulation results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used.