CDAC e-Sushrut是印度CDAC公司的一个提供医院信息管理与医疗业务流程支持的系统平台。 CDAC e-Sushrut存在安全漏洞,该漏洞源于身份验证逻辑不当,依赖客户端响应参数确定身份验证状态,可能导致远程攻击者通过拦截和修改服务器响应绕过身份验证并未经授权访问用户账户。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| CDAC-Noida | e-Sushrut, Hospital Management Information System (HMIS) | Previous versions |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| CDAC-Noida | e-Sushrut, Hospital Management Information System (HMIS) | Previous versions | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-42515 | Insecure Direct Object Reference (IDOR) Vulnerability in e-Sushrut HMIS | |
| CVE-2026-42514 | Sensitive Data Exposure Vulnerability in e-Sushrut HMIS | |
| CVE-2026-42518 | Information Disclosure Vulnerability in e-Sushrut HMIS | |
| CVE-2026-42517 | Cryptographic Failure Vulnerability in e-Sushrut HMIS | |
| CVE-2026-42516 | Broken Access Control Vulnerability in e-Sushrut HMIS |
No comments yet