Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36925
HistorySep 03, 2022 - 8:08 p.m.

Remote Code Execution

2022-09-0320:08:12
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13
dcmtk
remote code execution
vulnerability
service class
relative path traversal
attacker
dicom files

0.003 Low

EPSS

Percentile

70.2%

dcmtk is vulnerable to remote code execution. Service class users are vulnerable to relative path traversal, allowing an attacker to write DICOM files into arbitrary directories under controlled names resulting in remote code execution.

CPENameOperatorVersion
dcmtk:sideq3.6.5-1
dcmtk:sideq3.6.5-1