Vulnerabilities > Microdicom
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-02-10 | CVE-2025-1002 | Improper Certificate Validation vulnerability in Microdicom Dicom Viewer 2024.3 MicroDicom DICOM Viewer version 2024.03 fails to adequately verify the update server's certificate, which could make it possible for attackers in a privileged network position to alter network traffic and carry out a machine-in-the-middle (MITM) attack. | 5.3 |
2024-06-11 | CVE-2024-28877 | Out-of-bounds Write vulnerability in Microdicom Dicom Viewer MicroDicom DICOM Viewer is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary code on affected installations of DICOM Viewer. | 8.8 |
2024-06-11 | CVE-2024-33606 | Improper Authorization in Handler for Custom URL Scheme vulnerability in Microdicom Dicom Viewer An attacker could retrieve sensitive files (medical images) as well as plant new medical images or overwrite existing medical images on a MicroDicom DICOM Viewer system. | 8.8 |
2024-03-01 | CVE-2024-22100 | Unspecified vulnerability in Microdicom Dicom Viewer MicroDicom DICOM Viewer versions 2023.3 (Build 9342) and prior are affected by a heap-based buffer overflow vulnerability, which could allow an attacker to execute arbitrary code on affected installations of DICOM Viewer. | 7.8 |
2024-03-01 | CVE-2024-25578 | Unspecified vulnerability in Microdicom Dicom Viewer MicroDicom DICOM Viewer versions 2023.3 (Build 9342) and prior contain a lack of proper validation of user-supplied data, which could result in memory corruption within the application. | 7.8 |