ADK Cyber[verified]@ADKCyberDisclosure
The tweet announces CVE-2026-56445, a high‑CVSS0.9.1 vulnerability that allows arbitrary file writes in qrscp DICOM C‑STORE handler, urging healthcare organizations to review affected systems.
Aviatrix Threat Research Center[verified]@aviatrixtrcActive Exploitation
Attackers used CVE-2026-56445 to write files without authentication, escalating privileges and moving laterally across healthcare networks, demonstrating active exploitation of the flaw.
Infoflowcloud@infoflowcloudDisclosure
The text announces CVE-2026-56445, describing an unsanitized os.path.join() usage in qrscp's C-STORE handler that could allow attackers to manipulate file paths via DICOM data; no PoC, exploitation, patch, or mitigation is referenced.
CVE@CVEnewDisclosure
A vulnerability (CVE‑2026‑56445) was disclosed in the qrscp C‑STORE handler where unsanitized attacker‑supplied DICOM data is used in os.path.join(), potentially enabling path manipulation; no PoC, exploit, active exploitation or patch was mentioned.