Vulnerabilities > Offis > Dcmtk > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-06-24 CVE-2022-2120 Path Traversal vulnerability in Offis Dcmtk
OFFIS DCMTK's (All versions prior to 3.6.7) service class user (SCU) is vulnerable to relative path traversal, allowing an attacker to write DICOM files into arbitrary directories under controlled names.
network
low complexity
offis CWE-22
critical
9.8
2022-06-24 CVE-2022-2119 Unspecified vulnerability in Offis Dcmtk
OFFIS DCMTK's (All versions prior to 3.6.7) service class provider (SCP) is vulnerable to path traversal, allowing an attacker to write DICOM files into arbitrary directories under controlled names.
network
low complexity
offis
critical
9.8
2019-07-22 CVE-2019-1010228 Out-of-bounds Write vulnerability in multiple products
OFFIS.de DCMTK 3.6.3 and below is affected by: Buffer Overflow.
network
low complexity
offis fedoraproject CWE-787
critical
9.8