CVE-2024-22100: Microdicom Dicom Viewer

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

MicroDicom DICOM Viewer versions 2023.3 (Build 9342) and prior are affected by a heap-based buffer overflow vulnerability, which could allow an attacker to execute arbitrary code on affected installations of DICOM Viewer. A user must open a malicious DCM file in order to exploit the vulnerability.

Affected products

  • Microdicom Dicom Viewer: before 2024.1 (fixed in 2024.1)

Published 2024-03-01. Last modified 2026-06-17.