Security Advisory

CVE-2025-26469

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-07-28 13:36:21
Last updated 2025-11-03 19:45:27
Assigner talos
State PUBLISHED

Description

An incorrect default permissions vulnerability exists in the CServerSettings::SetRegistryValues functionality of MedDream PACS Premium 7.3.3.840. A specially crafted application can decrypt credentials stored in a configuration-related registry key. An attacker can execute a malicious script or application to exploit this vulnerability.