2024-05-25 21:48:12 +02:00
### [CVE-2020-26629](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-26629)



### Description
A JQuery Unrestricted Arbitrary File Upload vulnerability was discovered in Hospital Management System V4.0 which allows an unauthenticated attacker to upload any file to the server.
### POC
#### Reference
- https://packetstormsecurity.com/files/176302/Hospital-Management-System-4.0-XSS-Shell-Upload-SQL-Injection.html
2024-06-09 00:33:16 +00:00
- https://packetstormsecurity.com/files/176302/Hospital-Management-System-4.0-XSS-Shell-Upload-SQL-Injection.html
2024-05-25 21:48:12 +02:00
#### Github
No PoCs found on GitHub currently.