SQL Injection vulnerability in "imageserver" module when processing C-FIND queries in CGM NETRAAD software allows attacker connected to PACS gaining access to database, including data processed by GCM CLININET software.This issue affects CGM NETRAAD with imageserver module in versions before 7.9.0.
CVSS
No CVSS.
References
Configurations
No configuration.
History
02 Mar 2026, 12:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-03-02 12:15
Updated : 2026-03-02 20:29
NVD link : CVE-2025-10350
Mitre link : CVE-2025-10350
CVE.ORG link : CVE-2025-10350
JSON object : View
Products Affected
No product.
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
