CVE-2024-4257 | BlueNet Technology Clinical Browsing System 1.2.1 /xds/deleteStudy.php documentUniqueId sql injection
A vulnerability described as critical has been identified in BlueNet Technology Clinical Browsing System 1.2.1. The impacted element is an unknown function of the file /xds/deleteStudy.php. Such manipulation of the argument documentUniqueId leads to sql injection.
This vulnerability is listed as CVE-2024-4257. The attack may be performed from remote. In addition, an exploit is available.