漏洞标题
Medixant RadiAnt DICOM Viewer证书验证不当漏洞
漏洞描述信息
Medixant RadiAnt DICOM Viewer由于更新机制未能验证更新服务器的证书,存在漏洞。这可能允许攻击者篡改网络流量,实施中间人攻击(MITM)。攻击者可以修改服务器的响应,向用户发送恶意更新。
CVSS信息
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
漏洞类别
证书验证不恰当
漏洞标题
Medixant RadiAnt DICOM Viewer Improper Certificate Validation
漏洞描述信息
Medixant RadiAnt DICOM Viewer is vulnerable due to failure of the update mechanism to verify the update server's certificate which could allow an attacker to alter network traffic and carry out a machine-in-the-middle attack (MITM). An attacker could modify the server's response and deliver a malicious update to the user.
CVSS信息
CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
漏洞类别
证书验证不恰当