CVE-2026-42517: Cdac-Noida E-Sushrut, Hospital Management Information System Hmis
High severity, CVSS 7.1. EPSS: 0.4% chance of exploitation in the next 30 days.
This vulnerability exists in e-Sushrut due to the use of reversible Base64 encoding for protecting sensitive data. An authenticated attacker could exploit this vulnerability by decoding and manipulating Base64-encoded parameters in the request URL to gain unauthorized access to sensitive information on the targeted system.
Affected products
- Cdac-Noida E-Sushrut, Hospital Management Information System Hmis
Published 2026-04-29. Last modified 2026-06-17.