In Sante DICOM Viewer Pro versions 14.0.3 and prior, a user must open a malicious DICOM file, which could allow a local attacker to disclose information or execute arbitrary code.
References
| Link | Resource |
|---|---|
| https://www.cisa.gov/news-events/ics-medical-advisories/icsma-24-058-01 | Third Party Advisory US Government Resource |
| https://www.cisa.gov/news-events/ics-medical-advisories/icsma-24-058-01 | Third Party Advisory US Government Resource |
Configurations
History
16 Jan 2025, 16:03
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Santesoft
Santesoft dicom Viewer Pro |
|
| CPE | cpe:2.3:a:santesoft:dicom_viewer_pro:*:*:*:*:*:*:*:* | |
| References | () https://www.cisa.gov/news-events/ics-medical-advisories/icsma-24-058-01 - Third Party Advisory, US Government Resource |
21 Nov 2024, 08:50
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.cisa.gov/news-events/ics-medical-advisories/icsma-24-058-01 - | |
| Summary |
|
01 Mar 2024, 19:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-03-01 19:15
Updated : 2025-01-16 16:03
NVD link : CVE-2024-1453
Mitre link : CVE-2024-1453
CVE.ORG link : CVE-2024-1453
JSON object : View
Products Affected
santesoft
- dicom_viewer_pro
CWE
CWE-125
Out-of-bounds Read
