CVE-2025-54862: Santesoft Sante PACS Server Cross-site Scripting
Sante PACS Server web portal is vulnerable to stored cross-site scripting. An attacker could inject malicious HTML codes redirecting a user to a malicious webpage and stealing the user's cookie.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54862?
CVE-2025-54862 is considered a high severity vulnerability due to the potential for stored cross-site scripting attacks.
How do I fix CVE-2025-54862?
To fix CVE-2025-54862, update Sante PACS Server to the latest version provided by Santesoft that addresses this vulnerability.
What types of attacks can occur due to CVE-2025-54862?
CVE-2025-54862 can allow attackers to inject malicious HTML, potentially redirecting users to harmful websites and stealing sensitive information.
Who is affected by CVE-2025-54862?
Users and administrators of the Santesoft Sante PACS Server are at risk from CVE-2025-54862.
Is CVE-2025-54862 a widespread vulnerability?
The impact of CVE-2025-54862 is localized to users of the Sante PACS Server, making it significant but not widespread in the broader industry.