DEV Community

Cover image for Critical Orthanc DICOM Server Vulnerabilities Expose Healthcare Systems to RCE and DoS
BeyondMachines for BeyondMachines

Posted on • Originally published at beyondmachines.net

Critical Orthanc DICOM Server Vulnerabilities Expose Healthcare Systems to RCE and DoS

Summary

Orthanc patched nine vulnerabilities in its DICOM server that allow remote code execution, denial-of-service, and sensitive data leakage through malformed medical images and HTTP requests.

Take Action:

If you have Orthanc DICOM servers, make sure they are isolated from the internet and accessible from trusted networks only. Then upgrade to version 1.12.11 as soon as possible. These vulnerabilities allow attackers to take over or crash your imaging servers just by sending a malicious file.


Read the full article on BeyondMachines


This article was originally published on BeyondMachines

Top comments (0)