5.1
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N
Description
Sante PACS Server is vulnerable to stored cross-site scripting. An attacker could inject malicious HTML codes redirecting a user to a malicious webpage and stealing the user's cookie.
Basic Information
ID
CVE-2025-54759
Source
icscert
Published
Aug 18, 2025 at 21:26
Affected Product
Vendor
Santesoft
Product
Sante PACS Server
Affected Versions
Santesoft Sante PACS Server 0