CVE-2024-25386: Laurelbridge Dicom Connectivity Framework

High severity, CVSS 8.8. EPSS: 1.7% chance of exploitation in the next 30 days.

Directory Traversal vulnerability in DICOM® Connectivity Framework by laurelbridge before v.2.7.6b allows a remote attacker to execute arbitrary code via the format_logfile.pl file.

Affected products

  • Laurelbridge Dicom Connectivity Framework: version 2.7.6b only

Published 2024-03-01. Last modified 2026-06-17.