Medixant RadiAnt DICOM Viewer 2024.02 got ICSMA-25-051-01. CVE-2025-1001, improper certificate validation during software update. Sharon Brizinov of Claroty Team82 reported it.

The update channel is the softest target in any product. If the viewer does not verify who it is talking to, an attacker in the middle hands it a malicious update and the product installs the attack itself. You do not need to breach the vendor if you can impersonate its update server to one clinic. Pin or properly validate the certificate on every update check. The auto-updater is a code-execution primitive you built on purpose.