CVE-2026-50003Disclosure

LOWCVSS 9.3 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A malicious or compromised server can make a DCMTK client using bit-preserving C-GET storage mode write files outside the chosen output directory, using both relative (../) paths and absolute paths.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-22

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 4 signals
  • Disclosure: 2 classified signals
  • Peaked 3d ago at 1 mentions (2026-06-30); latest day: 1
  • 4 total mentions across 4 days

Deep dive

Activity timeline4 mentions / 4d
00111Mentions · 2026-06-30: 1Mentions · 2026-07-02: 1Mentions · 2026-07-04: 1Mentions · 2026-07-05: 1Patch / Workaround · 2026-07-02: 1Patch / Workaround · 2026-07-04: 1Technical Details · 2026-06-30: 1Technical Details · 2026-07-02: 1Technical Details · 2026-07-04: 1Technical Details · 2026-07-05: 106-3007-0207-0407-05
Signal classification2 categories
Disclosure
250.0%
Patch
250.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-06-301
Disclosure1
2026-07-021
Patch1
2026-07-041
Patch1
2026-07-051
Disclosure1
Full discourse4 posts
  • Daily CyberSecurity@the_yellow_fall
    Patch

    Five DCMTK vulnerabilities hit the DICOM toolkit, including a CVSS 9.8 path traversal file write (CVE-2026-50003). Update DCMTK now. #DCMTK #DICOM #PathTraversal #CVE202650003 #MedicalImaging #ICS #Vulnerability http://securityonline.info/dcmtk-vulnerabilities-cve-2026-50003/

    Post summary

    Five vulnerabilities in the DCMTK DICOM toolkit, including a CVSS 9.8 path traversal flaw, are disclosed; users are urged to update their DCMTK installation to mitigate the risk.

    00031750
    12.9K followersView on X
  • Open Source Security mailing list@oss_security
    Disclosure

    OFFIS DCMTK (DICOM Toolkit): 5 CISA-coordinated CVEs affecting <= 3.7.0 https://www.openwall.com/lists/oss-security/2026/07/01/1 CVE-2026-50003: Bit-preserving C-GET path traversal, CVSS 9.8 and 4 CVEs scored CVSS 7.5+

    Post summary

    Five CISA‑coordinated CVEs affecting OFFIS DCMTK <= 3.7.0 are announced, including CVE‑2026‑50003, a bit‑preserving C‑GET path traversal with CVSS 9.8, plus four additional CVEs scoring 7.5 or higher.

    00000395
    4.7K followersView on X
  • SecAlerts@SecAlertsCo
    Patch

    🏥 CISA medical advisory issued for CVE-2026-50003 in OFFIS DCMTK Toolkit. A rogue DICOM server can force clients to write files anywhere on disk via path traversal - both ../ and absolute paths. Critical 9.3 CVSS. Patch now. https://secalerts.co/vulnerability/CVE-2026-50003?utm_campaign=x https://t.co/PehP2JX0uS

    Post summary

    CISA issued a medical advisory for CVE‑2026‑50003, a critical path‑traversal flaw in OFFIS DCMTK Toolkit, and a patch is now available.

    00000147
    847 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-50003 Path Traversal in DCMTK Client Bit-Preserving C-GET Storage Mode https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-50003

    Post summary

    The post announces a Path Traversal vulnerability (CVE-2026-50003) affecting the DCMTK client’s Bit-Preserving C-GET Storage Mode, providing basic technical details but no PoC, exploit, or mitigation info.

    0000094
    4.1K followersView on X

Explore more