CVE-2025-24485
28.07.2025, 14:15
A server-side request forgery vulnerability exists in the cecho.php functionality of MedDream PACS Premium 7.3.5.860. A specially crafted HTTP request can lead to SSRF. An attacker can make an unauthenticated HTTP request to trigger this vulnerability.
Vendor | Product | Version |
---|---|---|
meddream | pacs_server | 7.3.5.860 |
𝑥
= Vulnerable software versions