An incorrect default permissions vulnerability exists in the CServerSettings::SetRegistryValues functionality of MedDream PACS Premium 7.3.3.840. A specially crafted application can decrypt credentials stored in a configuration-related registry key. An attacker can execute a malicious script or application to exploit this vulnerability.
| Software | From | Fixed in |
|---|---|---|
| meddream / pacs_server | 7.3.2.840 | 7.3.2.840.x |