Vulnerabilities
Vulnerable Software
Microdicom:  >> Dicom Viewer  Security Vulnerabilities
MicroDicom DICOM Viewer version 2024.03 fails to adequately verify the update server's certificate, which could make it possible for attackers in a privileged network position to alter network traffic and carry out a machine-in-the-middle (MITM) attack. This allows the attackers to modify the server's response and deliver a malicious update to the user.
CVSS Score
5.7
EPSS Score
0.0
Published
2025-02-10
An attacker could retrieve sensitive files (medical images) as well as plant new medical images or overwrite existing medical images on a MicroDicom DICOM Viewer system. User interaction is required to exploit this vulnerability.
CVSS Score
8.8
EPSS Score
0.003
Published
2024-06-11
MicroDicom DICOM Viewer is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary code on affected installations of DICOM Viewer. User interaction is required to exploit this vulnerability.
CVSS Score
8.8
EPSS Score
0.004
Published
2024-06-11
MicroDicom DICOM Viewer versions 2023.3 (Build 9342) and prior are affected by a heap-based buffer overflow vulnerability, which could allow an attacker to execute arbitrary code on affected installations of DICOM Viewer. A user must open a malicious DCM file in order to exploit the vulnerability.
CVSS Score
7.8
EPSS Score
0.0
Published
2024-03-01
MicroDicom DICOM Viewer versions 2023.3 (Build 9342) and prior contain a lack of proper validation of user-supplied data, which could result in memory corruption within the application.
CVSS Score
7.8
EPSS Score
0.001
Published
2024-03-01


Contact Us

Shodan ® - All rights reserved