SB2025071840 - Insecure DLL loading in Panoramic Corporation Digital Imaging Software
Published: July 18, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Insecure DLL loading (CVE-ID: CVE-2024-22774)
The vulnerability allows a local user to compromise vulnerable system.
The vulnerability exists due to the application loads DLL libraries in an insecure manner. A local user can place a specially crafted .dll file and obtain NT Authority/SYSTEM as a standard user.
Remediation
Cybersecurity Help is not aware of any official remediation provided by the vendor.
References
- https://blueteamalpha.com/blog/new-vulnerability-discovered-in-panoramic-x-ray-software/
- https://github.com/Gray-0men/CVE-2024-22774
- https://pancorp.com/index.html
- https://pancorp.com/pdf/Panoramic-Dental-Imaging-%28GLAN%29-Windows-10x64-Setup-Rev3.pdf
- https://pancorp.com/software/files/PANCORP_DENTAL_IMAGING_9.1.2.7600.exe