CVE-2024-23913
CVE-2024-23913
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 4EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
03 May 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Use of Out-of-range Pointer Offset vulnerability in Merge DICOM Toolkit C/C++ on Windows.
When deprecated MC_XML_To_Message() function is used to read a malformed DICOM XML file, it might result in memory access violation.
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Affected products
Merative · Merge DICOM Toolkit C/C++Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →