CVE-2015-2898: Medicomp Medcin Engine

Medium severity, CVSS 6.8. EPSS: 3.2% chance of exploitation in the next 30 days.

Multiple stack-based buffer overflows in Medicomp MEDCIN Engine before 2.22.20153.226 might allow remote attackers to execute arbitrary code via a crafted packet on port 8190, related to (1) the SetGroupSequenceEx na_setgroupsequenceex function, (2) the FormatDate julptostr function, and (3) the UserFindingCodes addtocl function.

Affected products

  • Medicomp Medcin Engine: up to and including 2.22.20142.166

Published 2015-10-29. Last modified 2026-06-17.