Medixant RadiAnt DICOM Viewer 2024.02 got ICSMA-25-051-01. CVE-2025-1001, improper certificate validation during software update. Sharon Brizinov of Claroty Team82 reported it.

Certificate validation is the step that lets a program confirm the machine answering an update request is the one the vendor actually runs, not an impostor on the same path. When that check is weak or absent, the encrypted connection still forms but proves only privacy, never identity, so a party sitting between the viewer and its update host can present its own server and be believed. The defect recurs because validation is easy to switch off in development and easy to leave off.

The update channel is the softest target in any product. If the viewer does not verify who it is talking to, an attacker in the middle hands it a malicious update and the product installs the attack itself. You do not need to breach the vendor if you can impersonate its update server to one clinic. Pin or properly validate the certificate on every update check. The auto-updater is a code-execution primitive you built on purpose.

On a radiology workstation the stakes are concrete. The viewer runs where clinicians open studies and reach reading decisions, so a package the software accepts on its own authority becomes code executing beside patient images. Reaching every site at once is unnecessary; one foothold on a clinic network or a shared wireless segment can feed a poisoned update to the machines that check in from there.

The finding travelled the coordinated route that now defines medical-device reporting, a researcher disclosing to a national coordinator and the vendor, followed by a published advisory and a corrected release. Lightweight imaging viewers occupy an awkward spot in that system, downloaded freely and installed widely, often outside formal procurement, so the software updating itself on a clinical desktop may never have passed the hospital's own security review.