Missing Authentication Vulnerability in Uniweb/SoliPACS WebServer by EBM Technologies
CVE-2025-11671

6.9MEDIUM

Key Information:

Vendor
CVE Published:
13 October 2025

What is CVE-2025-11671?

The Uniweb/SoliPACS WebServer developed by EBM Technologies has a vulnerability that permits unauthenticated remote attackers to access specific pages. This flaw enables potential access to sensitive information, including account names and IP addresses, without requiring authentication. Organizations using this web server should prioritize securing their systems to mitigate unauthorized access risks.

Affected Version(s)

Uniweb/SoliPACS WebServer 0 <= 12.1.2577

References

CVSS V4

Score:
6.9
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-11671 : Missing Authentication Vulnerability in Uniweb/SoliPACS WebServer by EBM Technologies