Vulnerabilities
Vulnerable Software
The Sante PACS Server allows a remote attacker to crash the main thread by sending a crafted HL7 message, causing a denial-of-service condition. The application would require a manual restart and no authentication is required.
CVSS Score
8.7
EPSS Score
0.006
Published
2025-08-18
The Sante PACS Server Web Portal sends credential information without encryption.
CVSS Score
9.1
EPSS Score
0.0
Published
2025-08-18
Sante PACS Server is vulnerable to stored cross-site scripting. An attacker could inject malicious HTML codes redirecting a user to a malicious webpage and stealing the user's cookie.
CVSS Score
5.1
EPSS Score
0.0
Published
2025-08-18
Sante PACS Server web portal is vulnerable to stored cross-site scripting. An attacker could inject malicious HTML codes redirecting a user to a malicious webpage and stealing the user's cookie.
CVSS Score
4.8
EPSS Score
0.0
Published
2025-08-18


Contact Us

Shodan ® - All rights reserved