CVE-2025-1001

CVSS 3.1 Score 5.7 of 10 (medium)

Details

Published Feb 21, 2025
CWE ID 295

Summary

CVE-2025-1001: A vulnerability affects Medixant RadiAnt DICOM Viewer, allowing an attacker to carry out a man-in-the-middle (MITM) attack due to the update mechanism's failure to validate the server's certificate. This issue could lead to the delivery of malicious updates to users. (Objective, Professional, and Straightforward) CVE-2025-1001 exposes Medixant RadiAnt DICOM Viewer users to a security risk, as the update mechanism neglects to authenticate the server's certificate. Consequently, an attacker can manipulate the network traffic and distribute malicious updates, posing a potential threat to users. (Objective, Professional, and Straightforward) Medixant RadiAnt DICOM Viewer users face a vulnerability (CVE-2025-1001), which arises from the update mechanism's inability to verify the authenticity of the update server's certificate. As a result, attackers can perform man-in-the-middle attacks and introduce malicious updates to unsuspecting users. (Objective, Professional, and Straightforward) CVE-2025-1001 represents a serious concern for users of Medixant RadiAnt DICOM Viewer, as the update mechanism fails to authenticate the update server's certificate. This oversight opens the door for attackers to intercept network traffic and deliver malicious updates, potentially compromising user systems. (Objective, Professional, and Straightforward) The Medixant RadiAnt DICOM Viewer is affected by a vulnerability, identified as CVE-2025-1001. This issue arises due to the update mechanism's neglect to verify the authenticity of the update server's certificate, leaving users susceptible to man-in-the-middle attacks and the delivery of malicious updates. (Objective, Professional, and Straightforward)

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share