« Volver al listado

CVE-2025-14096

Estado: AplazadaAlta (8.4)—

A vulnerability exists in multiple Radiometer products that allow an attacker with physical access to the analyzer possibility to extract credential information. The vulnerability is due to a weakness in the design and insufficient credential protection in operating system.

Other related CVE's are CVE-2025-14095 & CVE-2025-14097.

Affected customers have been informed about this vulnerability. This CVE is being published to provide transparency.

Required Configuration for Exposure:

Attacker requires physical access to the analyzer.

Temporary work Around: Only authorized people can physically access the analyzer.

Leer descripción completaMostrar menos

Permanent solution: Local Radiometer representatives will contact all affected customers to discuss a permanent solution.

Exploit Status:

Researchers have provided a working proof-of-concept (PoC). Radiometer is not aware of any public exploit code at the time of this publication.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

🎯 Técnicas ATT&CK

Cómo se explota esta vulnerabilidad y qué consigue el atacante, en el lenguaje de MITRE ATT&CK.

AV:L sin UI, acceso físico → T1068. Extracción de credenciales (T1552.001) y acceso a cuentas (T1078.001) por debilidad en protección de credenciales en SO.

Inferido por nuestro agente de análisis a partir de la descripción oficial, el vector CVSS y la CWE, y comprobado por un supervisor. Puede contener errores.

🛡️ Mitigaciones ATT&CK que cubren estas técnicas

Tecnologías afectadas (1)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2025-14096",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2025-14096",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "no"
            },
            {
              "technicalImpact": "total"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2025-12-17T14:42:57.843796Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "46b595e9-1acc-41cb-9398-adaf98d37a9b",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 8.4,
          "attackVector": "LOCAL",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 2.5
      }
    ]
  },
  "affected": [
    {
      "source": "46b595e9-1acc-41cb-9398-adaf98d37a9b",
      "affectedData": [
        {
          "vendor": "Radiometer Medical Aps",
          "product": "ABL90 FLEX and ABL90 FLEX PLUS Analyzers",
          "versions": [
            {
              "status": "affected",
              "version": "Windows 7 Operating system",
              "versionType": "Radiometer Customized Windows Operating System"
            },
            {
              "status": "affected",
              "version": "Windows XP Operating system",
              "versionType": "Radiometer Customized Windows Operating System"
            }
          ],
          "platforms": [
            "Windows XP",
            "Windows 7"
          ],
          "defaultStatus": "unaffected"
        },
        {
          "vendor": "Radiometer Medical Aps",
          "product": "AQT90 FLEX Analyzers",
          "versions": [
            {
              "status": "affected",
              "version": "Windows 7 Operating system",
              "versionType": "Radiometer Customized Windows Operating System"
            },
            {
              "status": "affected",
              "version": "Windows XP Operating system",
              "versionType": "Radiometer Customized Windows Operating System"
            }
          ],
          "platforms": [
            "Windows 7",
            "Windows XP"
          ],
          "defaultStatus": "unaffected"
        },
        {
          "vendor": "Radiometer Medical Aps",
          "product": "ABL800 BASIC and ABL800 FLEX analyzers",
          "versions": [
            {
              "status": "affected",
              "version": "Windows 7 Operating system",
              "versionType": "Radiometer Customized Windows Operating System"
            },
            {
              "status": "affected",
              "version": "Windows XP Operating system",
              "versionType": "Radiometer Customized Windows Operating System"
            }
          ],
          "platforms": [
            "Windows 7",
            "Windows XP"
          ],
          "defaultStatus": "unaffected"
        }
      ]
    }
  ],
  "published": "2025-12-17T13:15:57.890",
  "references": [
    {
      "url": "https://www.radiometer.com/myradiometer",
      "source": "46b595e9-1acc-41cb-9398-adaf98d37a9b"
    }
  ],
  "vulnStatus": "Deferred",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "46b595e9-1acc-41cb-9398-adaf98d37a9b",
      "description": [
        {
          "lang": "en",
          "value": "CWE-250"
        },
        {
          "lang": "en",
          "value": "CWE-798"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "A vulnerability exists in multiple Radiometer products that allow an attacker with physical access to the analyzer possibility to extract credential information. The vulnerability is due to a weakness in the design and insufficient credential protection in operating system.\n\nOther related CVE's are CVE-2025-14095 & CVE-2025-14097.\n\n\n\nAffected customers have been informed about this vulnerability. This CVE is being published to provide transparency.\n\n\n\n\n\nRequired Configuration for Exposure:\n\n\nAttacker requires physical access to the analyzer.\n\n\n\nTemporary work Around:\nOnly authorized people can physically access the analyzer.\n\nPermanent solution:\nLocal Radiometer representatives will contact all affected customers to discuss a permanent solution.\n\nExploit Status:\n\n\nResearchers have provided a working proof-of-concept (PoC). Radiometer is not aware of any public exploit code at the time of this publication."
    }
  ],
  "lastModified": "2026-06-17T08:35:19.237",
  "sourceIdentifier": "46b595e9-1acc-41cb-9398-adaf98d37a9b"
}