CVE-2025-10350

SQL Injection vulnerability in "imageserver" module when processing C-FIND queries in CGM NETRAAD software allows attacker connected to PACS gaining access to database, including data processed by GCM CLININET software.This issue affects CGM NETRAAD with imageserver module in versions before 7.9.0.
CVSS

No CVSS.

Configurations

No configuration.

History

02 Mar 2026, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-02 12:15

Updated : 2026-03-02 20:29


NVD link : CVE-2025-10350

Mitre link : CVE-2025-10350

CVE.ORG link : CVE-2025-10350


JSON object : View

Products Affected

No product.

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')