Medium severity5.7NVD Advisory· Published Feb 10, 2025· Updated Jun 17, 2026
CVE-2025-1002
CVE-2025-1002
Description
MicroDicom DICOM Viewer version 2024.03
fails to adequately verify the update server's certificate, which could make it possible for attackers in a privileged network position to alter network traffic and carry out a machine-in-the-middle (MITM) attack. This allows the attackers to modify the server's response and deliver a malicious update to the user.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
32024.03+ 2 more
- (no CPE)range: 2024.03
- (no CPE)range: 2024.03
- cpe:2.3:a:microdicom:dicom_viewer:2024.3:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- www.cisa.gov/news-events/ics-medical-advisories/icsma-25-037-01nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.