Threats Tagged 'cve-2025-63512'
View all threats tagged with 'cve-2025-63512'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-63512'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2025-63512 is a medium-severity SQL Injection vulnerability found in the kishan0725 Hospital Management System v4, specifically in the admin-panel1.php file within the deleting doctor functionality. The vulnerability arises because the application does not properly sanitize or parameterize the 'demail' parameter before using it in a dynamic SQL query. This flaw allows unauthenticated remote attackers to inject malicious SQL commands, potentially leading to unauthorized data access or modification. Although no known exploits are currently reported in the wild, exploitation could compromise the confidentiality and integrity of sensitive healthcare data. The vulnerability requires no authentication or user interaction and can be exploited remotely over the network. European healthcare organizations using this system are at risk, especially those with limited security controls around legacy or niche hospital management software. Mitigation involves applying secure coding practices such as prepared statements and input validation, and monitoring for suspicious database activity. Countries with significant healthcare infrastructure and adoption of such systems, including Germany, France, Italy, Spain, and the UK, are most likely to be affected. Given the potential impact on sensitive patient data and ease of exploitation, timely remediation is critical. Join the discussion | CVE Database V5 | 11/18/2025, 00:00:00 UTC Added: 11/18/2025, 16:17:57 UTC |
Showing 1 to 1 of 1 result