Unrated severityNVD Advisory· Published Jul 28, 2025· Updated Nov 3, 2025
CVE-2025-24485
CVE-2025-24485
Description
A server-side request forgery vulnerability exists in the cecho.php functionality of MedDream PACS Premium 7.3.5.860. A specially crafted HTTP request can lead to SSRF. An attacker can make an unauthenticated HTTP request to trigger this vulnerability.
Affected products
2- Range: = 7.3.5.860
- MedDream/MedDream PACS Premiumv5Range: 7.3.5.860
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.