CVE-2026-82181 MEDIUM

CVE-2026-82181: Le-yan|Medical Practice Management System - Sensitive Data in URL

Vendor Le-Yan
Product Medical Practice Management System
Weakness CWE-598
Published August 28, 2026
Last update August 28, 2026

CVSS base score

6.8/10
Attack vector Local
Attack complexity Low
Privileges required Low
User interaction None
Confidentiality
Integrity

CVSS vector

CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N

What the vulnerability does

01Description

Medical Practice Management System developed by Le-yan has a Sensitive Data in URL vulnerability. Unauthenticated remote attackers can obtain sensitive information via victim's browser history or log files.

Key dates

02Disclosure timeline

August 28, 2026 CVE published
August 28, 2026 Record updated