Meddream

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 40
    Known Exploited: 0
    4
    Critical Level Threats
    5
    High Level Threats
    31
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2018-25372

    MedDream PACS Server Premium 6.7.1.1 SQL Injection via email

    Last Modified: Jul 28, 2026
    Published: May 25, 2026

    CVE-2020-37009

    MedDream PACS Server 6.8.3.751 - Remote Code Execution

    Last Modified: Apr 15, 2026
    Published: Jan 29, 2026

    CVE-2025-54817

    A reflected cross-site scripting (xss) vulnerability exists in the autoPurge functionality of MedDream PACS Premium 7.3.6.870. A specially crafted malicious url can lead to arbitrary javascript code execution. An attacker can provide a URL to a malicious website to trigger this vulnerability.

    Last Modified: Jan 29, 2026
    Published: Jan 20, 2026

    CVE-2025-53516

    A reflected cross-site scripting (xss) vulnerability exists in the downloadZip functionality of MedDream PACS Premium 7.3.6.870. A specially crafted malicious url can lead to arbitrary javascript code execution. An attacker can provide a crafted URL to trigger this vulnerability.

    Last Modified: Jan 29, 2026
    Published: Jan 20, 2026

    CVE-2025-54495

    A reflected cross-site scripting (xss) vulnerability exists in the emailfailedjob functionality of MedDream PACS Premium 7.3.6.870. A specially crafted malicious url can lead to arbitrary javascript code execution. An attacker can provide a crafted URL to trigger this vulnerability.

    Last Modified: Jan 29, 2026
    Published: Jan 20, 2026
    Items Per Page