CVE-2026-14161: Advantech|Hospital Queuing Management - Sensitive Data Exposure
Hospital Quening Management developed by Advantech has a Sensitive Data Exposure vulnerability, allowing unauthenticated remote attackers to access a specific URL to obtain API documentation.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Advantech Hospital Queuing Management (HQM) ISOto a version that resolves this vulnerability.Fixed in 1.2.13 - Upgrade
Upgrade
Advantech Hospital Queuing Management (HQM) QueueHttp.dllto a version that resolves this vulnerability.Fixed in 1.2.12.7
Event History
Frequently Asked Questions
What is the severity of CVE-2026-14161?
CVE-2026-14161 has a high severity rating of 7.5.
How do I fix CVE-2026-14161?
To fix CVE-2026-14161, ensure that sensitive API documentation is properly secured and not accessible to unauthenticated users.
What type of vulnerability is CVE-2026-14161?
CVE-2026-14161 is classified as a Sensitive Data Exposure vulnerability.
What impact does CVE-2026-14161 have on organizations?
CVE-2026-14161 allows unauthenticated remote attackers to access sensitive API documentation, potentially leading to data exposure.
Who is affected by CVE-2026-14161?
CVE-2026-14161 affects users of the Advantech Hospital Queuing Management software.