← Späť na vyhľadávanie CVE

CVE-2026-42516

e-Sushrut

Popis

This vulnerability exists in e-Sushrut due to improper authorization checks during resource access. An authenticated attacker could exploit this vulnerability by manipulating encoded parameters in the request URL to gain unauthorized access to patient accounts on the targeted system.

CVSS 7.1EPSS 0.22599999999999998%Riziko 0.72
Zobraziť zdroj
Zverejnené
2026-04-29 09:16:24
Dotknuté verzie
unknown
Typ
Core software
Vektor
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X