Pamzey Vulnerabilities
Comprehensive security vulnerability database for Pamzey products
4
0
4
1
Severity Distribution
| Description | Vendor / Product | Exploit Status | |||
|---|---|---|---|---|---|
| CVE-2026-3817 | 5.5 | An attacker can gain unauthorized access to sensitive patient information by exploiting a flaw in the queue management system's patient search feature, which can be done remotely. This vulnerability requires no special access or credentials, making it easier for malicious users to take advantage of it. | pamzeypatients waiting area queue management system | Exploit Available | 29 days agoMar 9, 2026 |
| CVE-2026-3724 | 5.3 | An attacker can remotely manipulate the patient ID in the queue management system to gain unauthorized access to sensitive functions, potentially allowing them to view or alter patient information. This vulnerability can be exploited without needing any special access or credentials. | pamzeypatients waiting area queue management system | Exploit Available | about 1 month agoMar 8, 2026 |
| CVE-2026-3171 | 5.1 | This vulnerability allows an attacker to inject malicious scripts into the queue management system, which could then be executed in the browsers of users visiting the site. The attacker can exploit this remotely by manipulating the names entered in the system, making it a risk for anyone using the application. | pamzeypatients waiting area queue management system | Exploit Available | about 1 month agoFeb 25, 2026 |
| CVE-2026-3170 | 4.8 | An attacker can inject malicious scripts into the Patients Waiting Area Queue Management System by manipulating the First Name or Last Name fields in the patient search function, allowing them to execute harmful actions on users' browsers. This vulnerability can be exploited remotely, meaning attackers don't need physical access to the system to carry out their attack. | pamzeypatients waiting area queue management system | Exploit Available | about 1 month agoFeb 25, 2026 |
About Pamzey Security
This page tracks all publicly disclosed security vulnerabilities (CVEs) affecting Pamzey products. Our database is updated in real-time from the National Vulnerability Database (NVD) and enriched with exploit information from GitHub and other security research sources.
Each CVE listing includes CVSS severity scores, exploit availability status, AI-powered vulnerability summaries, and links to official patches and security advisories.