Aller au contenu

Fiche vulnérabilité

CVE-2025-35032 : faille critique mieweb enterprise health (CVSS 9.9)

Description

Medical Informatics Engineering Enterprise Health allows authenticated users to upload arbitrary files. The impact of this behavior depends on how files are accessed. This issue is fixed as of 2025-04-08.

En bref

Sévérité
Critique (CVSS 9.9)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
29 sept. 2025
Dernière mise à jour
17 juin 2026

Produits concernés

  • mieweb enterprise health

Références

Rechercher une autre vulnérabilité dans la base CVE