Vulnerabilities (CVE)

Filtered by vendor Orthanc-server Subscribe
Filtered by product Osimis Web Viewer
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-7238 1 Orthanc-server 1 Osimis Web Viewer 2024-11-21 N/A 7.1 HIGH
A XSS payload can be uploaded as a DICOM study and when a user tries to view the infected study inside the Osimis WebViewer the XSS vulnerability gets triggered. If exploited, the attacker will be able to execute arbitrary JavaScript code inside the victim's browser.