CVE-2024-46532
Severity CVSS v4.0:
Pending analysis
Type:
CWE-89
SQL Injection
Publication date:
11/10/2024
Last modified:
16/10/2024
Description
SQL Injection vulnerability in OpenHIS v.1.0 allows an attacker to execute arbitrary code via the refund function in the PayController.class.php component.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL



