CVE-2024-33606

An attacker could retrieve sensitive files (medical images) as well as plant new medical images or overwrite existing medical images on a MicroDicom DICOM Viewer system. User interaction is required to exploit this vulnerability.
Configurations

No configuration.

History

21 Nov 2024, 09:17

Type Values Removed Values Added
References () https://www.cisa.gov/news-events/ics-medical-advisories/icsma-24-163-01 - () https://www.cisa.gov/news-events/ics-medical-advisories/icsma-24-163-01 -

13 Jun 2024, 18:36

Type Values Removed Values Added
Summary
  • (es) Un atacante podría recuperar archivos confidenciales (imágenes médicas), así como colocar nuevas imágenes médicas o sobrescribir imágenes médicas existentes en un sistema MicroDicom DICOM Viewer. Se requiere la interacción del usuario para aprovechar esta vulnerabilidad.

11 Jun 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-11 21:15

Updated : 2024-11-21 09:17


NVD link : CVE-2024-33606

Mitre link : CVE-2024-33606

CVE.ORG link : CVE-2024-33606


JSON object : View

Products Affected

No product.

CWE
CWE-939

Improper Authorization in Handler for Custom URL Scheme