A vulnerability, which was classified as problematic, was found in code-projects Patient Record Management System 1.0. This affects an unknown part of the file /db/hcpms.sql of the component SQL Database Backup File Handler. Executing a manipulation can lead to information disclosure.
This vulnerability is tracked as CVE-2026-5960. The attack can be launched remotely. Moreover, an exploit is present.
The application of restrictive firewalling is recommended.