CVE-2026-82181

Summary

Medical Practice Management System developed by Le-yan has a Sensitive Data in URL vulnerability. Unauthenticated remote attackers can obtain sensitive information via victim's browser history or log files.

Affected Software

VendorProductVersion RangeStatus
Le-yanMedical Practice Management System2.4.2.8 <= 2.5.1.9affected

Weaknesses

  • CWE-598: CWE-598 Use of GET request method with sensitive query strings

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References