MedDream Web DICOM Viewer Cleartext Transmission of Credentials Information Disclosure Vulnerability

Vulnerability

A vulnerability exists in MedDream Web DICOM Viewer due to the unencrypted transmission of credentials, allowing network-adjacent attackers to intercept and disclose sensitive information. This issue, which arises within the Web Portal, can be exploited without authentication, potentially leading to further compromise of the affected system.

Impact

Exploitation of this vulnerability allows for the interception and disclosure of transmitted credentials, which could be used to compromise the affected system.

Remediation

Users can upgrade to MedDream Web DICOM Viewer version 7.3.5.860 to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
4.9
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.