PT-2025-11207 · Unknown · Sante Pacs Server.Exe

Published

2025-03-13

·

Updated

2025-04-10

·

CVE-2025-2264

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Sante PACS Server.exe (affected versions not specified)
Description A Path Traversal Information Disclosure issue exists in Sante PACS Server.exe, allowing an unauthenticated remote attacker to download arbitrary files on the disk drive where the application is installed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2025-2264

Affected Products

Sante Pacs Server.Exe