Skip to main content

Vendor archive

mirion CVEs

Beta · best-effort

6 CVEs tagged to vendor mirion0 Critical, 5 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2025-64778

Published Dec 2, 2025

NMIS/BioDose software V22.02 and previous versions contain executable binaries with plain text hard-coded passwords. These hard-coded passwords could allow unauthorized access to…

CVSS 8.4 · High
Vendor/product tagsBeta · best-effort

CVE-2025-64642

Published Dec 2, 2025

NMIS/BioDose V22.02 and previous versions' installation directory paths by default have insecure file permissions, which in certain deployment scenarios can enable users on client…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2025-64298

Published Dec 2, 2025

NMIS/BioDose V22.02 and previous version installations where the embedded Microsoft SQLServer Express is used are exposed in the Windows share accessed by clients in networked ins…

CVSS 8.6 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-62575

Published Dec 2, 2025

NMIS/BioDose V22.02 and previous versions rely on a Microsoft SQL Server database. The SQL user account 'nmdbuser' and other created accounts by default have the sysadmin role. Th…

CVSS 8.7 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-61940

Published Dec 2, 2025

NMIS/BioDose V22.02 and previous versions rely on a common SQL Server user account to access data in the database. User access in the client application is restricted by a passwor…

CVSS 8.7 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1