CVE-2026-3980 | itsourcecode Online Doctor Appointment System 1.0 patient_action.php patient_id sql injection
A vulnerability categorized as critical has been discovered in itsourcecode Online Doctor Appointment System 1.0. This impacts an unknown function of the file /admin/patient_action.php. Such manipulation of the argument patient_id leads to sql injection.
This vulnerability is traded as CVE-2026-3980. The attack may be launched remotely. Furthermore, there is an exploit available.