CVE-2025-58088 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Multiple reflected cross-site scripting (xss) vulnerabilities exist in the config.php functionality of MedDream PACS Premium 7.3.6.870. Specially crafted malici…
Medium CVSS: 6.1

CVE-2025-58088

Multiple reflected cross-site scripting (xss) vulnerabilities exist in the config.php functionality of MedDream PACS Premium 7.3.6.870. Specially crafted malicious URLs can lead to arbitrary javascript code execution. An attacker can provide a crafted URL to trigger these vulnerabilities.This vulnerability affects the archivedir parameter.
Vendor
Meddream
Product
Pacs Server
CWE
CWE-79
Yayın Tarihi
2026-01-20 15:17:04
Güncelleme
2026-01-29 15:16:22
Source Identifier
talos-cna@cisco.com
KEV Date Added
-

Kategoriler

Referanslar