logo

Whatsup Gold, Observium and Offis vulnerabilities

ID: 0e875c35-3ebc-5430-9d51-8ce957f85692

STIX ID: report--0e875c35-3ebc-5430-9d51-8ce957f85692

Feed Name: Cisco Talos

Threat Score
55/100

Date Published: 2025-01-29

Date Updated: 2026-04-27

Author: Kri Dontje

...
...

Cisco Talos disclosed and detailed multiple patched vulnerabilities across three products: Observium (two XSS and one HTML injection reachable by authenticated users), Offis DCMTK (three flaws including a type-conversion bug enabling arbitrary code execution and two array index validation issues enabling out-of-bounds writes via crafted DICOM files), and WhatsUp Gold (several information-disclosure and DoS issues, some exploitable without authentication). The advisories include CVE identifiers and vendor patches; Snort rules and Talos vulnerability reports are provided for detection guidance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.