Remote Code Execution in Clinic's Patient Management System v 1.0 allows Attacker to Upload arbitrary php webshell via profile picture upload functionality in users.php
https://github.com/Dharan10/CVE-2022-40471
https://www.sourcecodester.com/php-clinics-patient-management-system-source-code
https://github.com/RashidKhanPathan/CVE-2022-40471
https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-43749
https://drive.google.com/file/d/1m-wTfOL5gY3huaSEM3YPSf98qIrkl-TW/view?usp=sharing