Orthanc-server
Orthanc-server Orthanc: vulnerabilidades y CVE
Orthanc-server Orthanc tiene 13 vulnerabilidades publicadas, 10 de ellas en los últimos 12 meses. 4 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE13
Últimos 12 meses10
Críticas4
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-5445 | Crítica (9.1) | 0.79% | — | 9 abr 2026 | An out-of-bounds read vulnerability exists in the `DecodeLookupTable` function within `DicomImageDecoder.cpp`. The lookup-table decoding logic used for `PALETTE COLOR` images does not validate pixel indices against the… |
| CVE-2026-5444 | Alta (7.1) | 0.22% | — | 9 abr 2026 | A heap buffer overflow vulnerability exists in the PAM image parsing logic. When Orthanc processes a crafted PAM image embedded in a DICOM file, image dimensions are multiplied using 32-bit unsigned arithmetic.… |
| CVE-2026-5443 | Crítica (9.8) | 0.88% | — | 9 abr 2026 | A heap buffer overflow vulnerability exists during the decoding of `PALETTE COLOR` DICOM images. Pixel length validation uses 32-bit multiplication for width and height calculations. If these values overflow, the… |
| CVE-2026-5442 | Crítica (9.8) | 0.92% | — | 9 abr 2026 | A heap buffer overflow vulnerability exists in the DICOM image decoder. Dimension fields are encoded using Value Representation (VR) Unsigned Long (UL), instead of the expected VR Unsigned Short (US), which allows… |
| CVE-2026-5441 | Alta (7.1) | 0.19% | — | 9 abr 2026 | An out-of-bounds read vulnerability exists in the `DecodePsmctRle1` function of `DicomImageDecoder.cpp`. The `PMSCT_RLE1` decompression routine, which decodes the proprietary Philips Compression format, does not… |
| CVE-2026-5440 | Alta (7.5) | 0.94% | — | 9 abr 2026 | A memory exhaustion vulnerability exists in the HTTP server due to unbounded use of the `Content-Length` header. The server allocates memory directly based on the attacker supplied header value without enforcing an… |
| CVE-2026-5439 | Alta (7.5) | 0.76% | — | 9 abr 2026 | A memory exhaustion vulnerability exists in ZIP archive processing. Orthanc automatically extracts ZIP archives uploaded to certain endpoints and trusts metadata fields describing the uncompressed size of archived… |
| CVE-2026-5438 | Alta (7.5) | 0.76% | — | 9 abr 2026 | A gzip decompression bomb vulnerability exists when Orthanc processes HTTP request with `Content-Encoding: gzip`. The server does not enforce limits on decompressed size and allocates memory based on attacker-controlled… |
| CVE-2026-5437 | Alta (7.5) | 0.76% | — | 9 abr 2026 | An out-of-bounds read vulnerability exists in `DicomStreamReader` during DICOM meta-header parsing. When processing malformed metadata structures, the parser may read beyond the bounds of the allocated metadata buffer.… |
| CVE-2025-15581 | Media (4.7) | 0.51% | — | 18 feb 2026 | Orthanc versions before 1.12.10 are affected by an authorisation logic flaw in the application's HTTP Basic Authentication implementation. Successful exploitation could result in Privilege Escalation, potentially… |
| CVE-2025-0896 | Crítica (9.2) | 2.5% | — | 13 feb 2025 | Orthanc server prior to version 1.5.8 does not enable basic authentication by default when remote access is enabled. This could result in unauthorized access by an attacker. |
| CVE-2024-22725 | Media (6.1) | 0.36% | — | 24 ene 2024 | Orthanc versions before 1.12.2 are affected by a reflected cross-site scripting (XSS) vulnerability. The vulnerability was present in the server's error reporting. |
| CVE-2023-33466 | Alta (8.8) | 4.2% | — | 29 jun 2023 | Orthanc before 1.12.0 allows authenticated users with access to the Orthanc API to overwrite arbitrary files on the file system, and in specific deployment scenarios allows the attacker to overwrite the configuration,… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.