CVE 7.1 HIGH

Mirion Medical EC2 Software NMIS BioDose Incorrect Permission Assignment for Critical Resource_CVE-2025-64642

7.1 / 10
HIGH
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:L/VI:H/VA:H/SC:N/SI:N/SA:N

Description

NMIS/BioDose V22.02 and previous versions' installation directory paths by default have insecure file permissions, which in certain deployment scenarios can enable users on client workstations to modify the program executables and libraries.

Basic Information

ID CVE-2025-64642
Source icscert
Published Dec 2, 2025 at 21:03
Modified Dec 2, 2025 at 21:40

Affected Product

Vendor Mirion Medical
Product EC2 Software NMIS BioDose
Affected Versions Mirion Medical EC2 Software NMIS BioDose 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.