Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-14095

23
FAUCET Score

CVE-2025-14095 is a "Privilege boundary violation" vulnerability affecting multiple Radiometer Products, allowing an attacker with physical access to gain unauthorized functionality. The severity is rated Medium (CVSS 6.8 or 5.7 depending on the OS), as it requires physical access but can lead to high confidentiality, integrity, and availability impact. While researchers have developed proof-of-concept exploits, Radiometer is not aware of any public exploits, and there is minimal community discussion or media coverage. A temporary workaround involves restricting physical access to authorized personnel, with a permanent solution to be provided by local Radiometer representatives.

Impacted Technologies

VendorProductVersion(s)CPE
Radiometer Medical ApsABL800 BASIC And ABL800 FLEX Analyzers
Application software versions < 6.20 MR2 with Windows 10 as underlying OS, Application software versions < 6.20 MR2 with Windows 7, Windows XP as underlying OSCNA affecteddefault unaffected
Radiometer Medical ApsABL9 Analyzers
Application software versions < 1.5.0CNA affecteddefault unaffected
Radiometer Medical ApsABL90 FLEX And ABL90 FLEX PLUS Analyzers
All application software versions with Windows 7, Windows XP as underlying OS, Application software versions < 3.5MR11 with Windows 10 as underlying OSCNA affecteddefault unaffected
Radiometer Medical ApsAQT90 FLEX Analyzers
All Application software versions <= 8.13 MR2CNA affecteddefault unaffected

CVSS Data

CVSS version used by this source: 3.1

6.8MEDIUM

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector
PHYSICAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
0.9
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.15%
Probability of exploitation in next 30 days
EPSS Percentile
4.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0015 is in the 7th percentile among its peer group of 1,532 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Remediation records are not available for this CVE.

References

radiometer.com / myradiometer