chikitsa records
7 published records for vendor chikitsa.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')5
- CWE-434 Unrestricted Upload of File with Dangerous Type2
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
34Monitor | CVE-2021-47758No exploit | Chikitsa Patient Management System 2.0.2 - Remote Code Execution (RCE) (Authenticated)chikitsa · patient management system · CWE-434 | High8.7 | — | 1.0% | Jan 15, 2026 |
34Monitor | CVE-2021-47757No exploit | Chikitsa Patient Management System 2.0.2 - 'plugin' Remote Code Execution (RCE) (Authenticated)chikitsa · patient management system · CWE-434 | High8.7 | — | 0.9% | Jan 15, 2026 |
21Monitor | CVE-2021-38152No exploit | index.php/appointment/insert_patient_add_appointment in Chikitsa Patient Management System 2.0.0 allows XSS.chikitsa · patient management system · CWE-79 | Medium5.4 | — | 1.0% | Aug 6, 2021 |
21Monitor | CVE-2021-38149Proof of concept | index.php/admin/add_user in Chikitsa Patient Management System 2.0.0 allows XSS.chikitsa · patient management system · CWE-79 | Medium5.4 | — | 0.7% | Aug 6, 2021 |
21Monitor | CVE-2021-38151No exploit | index.php/appointment/todos in Chikitsa Patient Management System 2.0.0 allows XSS.chikitsa · patient management system · CWE-79 | Medium5.4 | — | 0.6% | Aug 6, 2021 |
19Monitor | CVE-2021-42869No exploit | A Cross Site Scripting (XSS) vulnerability exists in Chikista Patient Management Software 2.0.2 via the last_name parameter in the (1) patiechikitsa · patient management software · CWE-79 | Medium4.8 | — | 0.6% | Mar 31, 2022 |
19Monitor | CVE-2021-42868No exploit | A Cross Site Scripting (XSS) vulnerability exists in Chikista Patient Management Software 2.0.2 in the first_name parameter in (1) patient/ichikitsa · patient management software · CWE-79 | Medium4.8 | — | 0.5% | Mar 31, 2022 |
- CVE-2021-4775834Monitor
Chikitsa Patient Management System 2.0.2 - Remote Code Execution (RCE) (Authenticated)
HighCVSS 8.7No exploitEPSS 1%chikitsa · patient management systemJan 15, 2026
- CVE-2021-4775734Monitor
Chikitsa Patient Management System 2.0.2 - 'plugin' Remote Code Execution (RCE) (Authenticated)
HighCVSS 8.7No exploitEPSS 1%chikitsa · patient management systemJan 15, 2026
- CVE-2021-3815221Monitor
index.php/appointment/insert_patient_add_appointment in Chikitsa Patient Management System 2.0.0 allows XSS.
MediumCVSS 5.4No exploitEPSS 1%chikitsa · patient management systemAug 6, 2021
- CVE-2021-3814921Monitor
index.php/admin/add_user in Chikitsa Patient Management System 2.0.0 allows XSS.
MediumCVSS 5.4Proof of conceptEPSS 1%chikitsa · patient management systemAug 6, 2021
- CVE-2021-3815121Monitor
index.php/appointment/todos in Chikitsa Patient Management System 2.0.0 allows XSS.
MediumCVSS 5.4No exploitEPSS 1%chikitsa · patient management systemAug 6, 2021
- CVE-2021-4286919Monitor
A Cross Site Scripting (XSS) vulnerability exists in Chikista Patient Management Software 2.0.2 via the last_name parameter in the (1) patie
MediumCVSS 4.8No exploitEPSS 1%chikitsa · patient management softwareMar 31, 2022
- CVE-2021-4286819Monitor
A Cross Site Scripting (XSS) vulnerability exists in Chikista Patient Management Software 2.0.2 in the first_name parameter in (1) patient/i
MediumCVSS 4.8No exploitEPSS 1%chikitsa · patient management softwareMar 31, 2022