CVE-2018-25142
NovaRad NovaPACS Diagnostics Viewer 8.5.19.75 contains an unauthenticated XML External Entity (XXE) injection vulnerability in XML preference import settings. Attackers can craft malicious XML files with DTD parameter entities to retrieve arbitrary system files through an out-of-band channel attack.
Vendor
-
Product
-
CWE
Yayın Tarihi
2025-12-24 20:15:48
Güncelleme
2025-12-29 15:58:13
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-