216.73.216.197

CVE-2026-8033

· Published 06/05/2026 20:16 · Modified 06/05/2026 20:16

Labels: CVE-2026-8033 2026-05-06CVE-2026-8033CWE-200[email protected]

Essential information

Published
06/05/2026 20:16
Modified
06/05/2026 20:16
Author
Creator
CVSS
5.5 MEDIUM (v3) 5.5 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A vulnerability has been found in PicoTronica e-Clinic Healthcare System ECHS 5.7. This affects an unknown function of the file /cdemos/echs/api/v2/ of the component Response Header Handler. Such manipulation leads to information disclosure. The attack may be performed from remote. The exploit has been disclosed to the public and may be used. Upgrading to version 5.7.1 mitigates this issue. It is suggested to upgrade the affected component. The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
picotronica / e-clinic healthcare system cpe:2.3:a:picotronica:e-clinic_healthcare_system:5.7:*:*:*:*:*:*:*
picotronica / e-clinic healthcare system cpe:2.3:a:picotronica:e-clinic_healthcare_system:5.7.1:*:*:*:*:*:*:*

References