Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Orthanc Server

First CVE: Jun 29, 2023Active for: 3 yearsTotal CVEs: 18

Orthanc Server is a lightweight, open-source Picture Archiving and Communication System (PACS) platform used in medical imaging environments, with a focused product footprint centered on the core Orthanc application and the Osimis Web Viewer component. The vendor's vulnerability disclosures, while modest in volume, reflect its specialized role in healthcare IT infrastructure where the attack surface and deployment context of a medical imaging server differ from general enterprise systems. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
14
Total CVEs
More Total CVEs than 94% of tracked vendors
1.8
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 79% of tracked vendors
7.7
Avg CVSS Score
Higher Avg CVSS Score than 74% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Orthanc Server over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 29, 2023
3 years ago
Most Recent CVE
Apr 9, 2026
106 days ago

Products(2 total)

Top CVEs

Signals from CVEs in this vendor scope (14 CVEs).

14 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-5443CRITICAL
A heap buffer overflow vulnerability exists during the decoding of `PALETTE COLOR` DICOM images. Pixel length validation uses 32-bit multiplication for width and height calculation
Apr 9, 20269.831NONO
CVE-2026-5442CRITICAL
A heap buffer overflow vulnerability exists in the DICOM image decoder. Dimension fields are encoded using Value Representation (VR) Unsigned Long (UL), instead of the expected VR
Apr 9, 20269.831NONO
CVE-2026-5445CRITICAL
An out-of-bounds read vulnerability exists in the `DecodeLookupTable` function within `DicomImageDecoder.cpp`. The lookup-table decoding logic used for `PALETTE COLOR` images does
Apr 9, 20269.130NONO
CVE-2023-33466HIGH
Orthanc before 1.12.0 allows authenticated users with access to the Orthanc API to overwrite arbitrary files on the file system, and in specific deployment scenarios allows the att
Jun 29, 20238.830NONO
CVE-2025-0896CRITICAL
Orthanc server prior to version 1.5.8 does not enable basic authentication by default when remote access is enabled. This could result in unauthorized access by an attacker.
Feb 13, 20259.828NONO
CVE-2026-5437HIGH
An out-of-bounds read vulnerability exists in `DicomStreamReader` during DICOM meta-header parsing. When processing malformed metadata structures, the parser may read beyond the bo
Apr 9, 20267.526NONO
CVE-2026-5440HIGH
A memory exhaustion vulnerability exists in the HTTP server due to unbounded use of the `Content-Length` header. The server allocates memory directly based on the attacker supplie
Apr 9, 20267.525NONO
CVE-2026-5439HIGH
A memory exhaustion vulnerability exists in ZIP archive processing. Orthanc automatically extracts ZIP archives uploaded to certain endpoints and trusts metadata fields describing
Apr 9, 20267.525NONO
CVE-2026-5438HIGH
A gzip decompression bomb vulnerability exists when Orthanc processes HTTP request with `Content-Encoding: gzip`. The server does not enforce limits on decompressed size and alloca
Apr 9, 20267.525NONO
CVE-2026-5444HIGH
A heap buffer overflow vulnerability exists in the PAM image parsing logic. When Orthanc processes a crafted PAM image embedded in a DICOM file, image dimensions are multiplied usi
Apr 9, 20267.124NONO
View all 14 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products14 CVEs
21%
50%
29%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local2 (14.3%)
Network12 (85.7%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low14 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None9 (64.3%)
Unknown0 (0.0%)
Required4 (28.6%)
Privileges Required
Low2 (14.3%)
High0 (0.0%)
None12 (85.7%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (14 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Orthanc Server.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Orthanc Server — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Orthanc Server's Products

View all 4 CNAs →

Top CWEs