Ashish Dhone ./blog

Jul 2, 2026 · 16 min read · 4 views

I Typed a URL and Became a Hospital Admin — CVE-2020-35745

By Ashish Dhone (@ashketchum) · CVE Research · Published January 2021

Ashish Dhone

Ashish Dhone

Offensive Security Researcher

Privilege Escalation & Unauthenticated Access to Admin Portal in PHPGURUKUL Hospital Management System 4.0


By Ashish Dhone (@ashketchum) · CVE Research · Published January 2021

🔒 Subscriber Only

Continue reading for $5/month

Get full access to this post and every future write-up — bug bounty reports, red teaming guides, and offensive security deep-dives.

Supports USD & INR · Cancel anytime

1 reads

⚡ Enjoy this write-up?

Get every post like this — $5/month

Bug bounty reports, red teaming guides, and offensive security write-ups. New content every week. Cancel anytime.

Subscribe now →

Supports in USD & INR · Secure checkout via Dodo Payments

Want personalised guidance?

Book a 1-on-1 strategy call with me — offensive security, red teaming, SOC career path, or breaking into cybersecurity.

Book a session on Topmate →