CNNVD-202512-4287 Information

CNNVD ID

CNNVD-202512-4287

CVE-2018-25142

  • CNNVD Published: 2025-12-24

Description (Chinese)

NovaRad NovaPACS Diagnostics Viewer是菲律宾NovaRad公司的一个医学影像诊断查看器。 NovaRad NovaPACS Diagnostics Viewer 8.5.19.75版本存在安全漏洞,该漏洞源于XML偏好设置导入存在XML外部实体注入,可能导致任意文件读取。

Description (English)

NovaRad NovaPACS Diagnostics Viewer is a medical video diagnostic viewer for NovaRad in the Philippines. Nova Rad NovaPACS Diagnostics Viewer 8.5.19.75 contains a security loophole that stems from the introduction of XML preferences into the input of an external XML entity, which may lead to any document being read.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

NovaRad

Published

2025-12-24

Last Modified

2026-02-24

References

https://www.exploit-db.com/exploits/45337 https://www.novarad.net https://www.zeroscience.mk/en/vulnerabilities/ZSL-2018-5488.php

Share on: