pynetdicom is vulnerable to Path Traversal
75
High Risk
Affected versions of the package are vulnerable to a path traversal vulnerability, allowing an attacker to overwrite any files on the filesystem through a malformed SOPInstanceUID value in a C-STORE request.
You are affected if you use the handle_store function directly, or if you indirectly use the Store SCP functionality via pynetidcom's apps (https://github.com/pydicom/pynetdicom/blob/main/pynetdicom/apps/) or otherwise.
pynetdicom is vulnerable to Path Traversal in versions 0.8.0 - 2.0.2.
Upgrade pynetdicom to the patch version (version 2.1.0).
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant