Browse all 9 CVE security advisories affecting OFFIS. AI-powered Chinese analysis, POCs, and references for each vulnerability.
OFFIS develops healthcare IT solutions, focusing on medical imaging and clinical information systems. Historically, vulnerabilities have included remote code execution, cross-site scripting, and privilege escalation, often stemming from insufficient input validation and access controls. The organization has addressed security gaps through patches and updates, though no major public incidents have been widely reported. With 9 CVEs on record, OFFIS maintains a moderate security posture typical of healthcare software providers, emphasizing compliance with medical data protection standards while continuously working to mitigate identified risks in their specialized domain.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-5663 | OFFIS DCMTK storescp storescp.cc executeOnEndOfStudy os command injection — DCMTKCWE-78 | 7.3 | High | 2026-04-06 |
| CVE-2025-14841 | OFFIS DCMTK dcmqrscp dcmqrdbi.cc startMoveRequest null pointer dereference — DCMTKCWE-476 | 3.3 | Low | 2025-12-18 |
| CVE-2025-14607 | OFFIS DCMTK dcmdata dcbytstr.cc makeDicomByteString memory corruption — DCMTKCWE-119 | 6.3 | Medium | 2025-12-13 |
| CVE-2024-52333 | OFFIS DCMTK 安全漏洞 — DCMTKCWE-119 | 8.4 | High | 2025-01-13 |
| CVE-2024-47796 | OFFIS DCMTK 安全漏洞 — DCMTKCWE-119 | 8.4 | High | 2025-01-13 |
| CVE-2024-28130 | OFFIS DCMTK 代码问题漏洞 — DCMTKCWE-704 | 7.5 | High | 2024-04-23 |
| CVE-2022-2119 | OFFIS DCMTK Path Traversal — DCMTKCWE-22 | 7.5 | High | 2022-06-24 |
| CVE-2022-2121 | OFFIS DCMTK NULL Pointer Dereference — DCMTKCWE-476 | 7.5 | High | 2022-06-24 |
| CVE-2022-2120 | OFFIS DCMTK Path Traversal — DCMTKCWE-23 | 7.5 | High | 2022-06-24 |
This page lists every published CVE security advisory associated with OFFIS. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.