Home

Description

Information disclosure vulnerability in error handling in MiR software prior to version 3.0.0 allows unauthenticated attackers to view detailed error information, such as file paths and other data, via access to verbose error pages.

PUBLISHED Reserved 2025-08-20 | Published 2025-08-20 | Updated 2025-08-20 | Assigner TRO




MEDIUM: 5.3CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Problem types

CWE-209 Generation of Error Message Containing Sensitive Information

Product status

Default status
unaffected

Any version before 3.0.0
affected

Default status
unaffected

Any version before 3.0.0
affected

Credits

Lockheed Martin Red Team reporter

References

a.storyblok.com/f/230581/x/34a075d078/msa-17.pdf vendor-advisory

supportportal.mobile-industrial-robots.com/...ecurity-guide/

cve.org (CVE-2025-9229)

nvd.nist.gov (CVE-2025-9229)

Download JSON