PT-2026-35881 · Cdac Noida · E-Sushrut

Published

2026-04-29

·

Updated

2026-04-29

·

CVE-2026-42513

CVSS v4.0

8.8

High

AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N
This vulnerability exists in e-Sushrut due to improper authentication logic that relies on client-side response parameters to determine authentication status. A remote attacker could exploit this vulnerability by intercepting and modifying the server response.
Successful exploitation of this vulnerability could allow the attacker to bypass authentication and gain unauthorized access to user accounts on the targeted system.

Fix

Related Identifiers

CVE-2026-42513

Affected Products

E-Sushrut