Incorrect Access Control in Thermo Fisher Scientific ePort Software
CVE-2025-32992

8.5HIGH

Key Information:

Status
Vendor
CVE Published:
18 August 2025

What is CVE-2025-32992?

Thermo Fisher Scientific's ePort software, up to version 3.0.0, has been found to have an incorrect access control vulnerability. This flaw enables unauthorized users to potentially gain access to sensitive functionality and data within the system, posing significant risks to operational security. Users are advised to review the vulnerability details and apply security best practices as needed.

References

CVSS V3.1

Score:
8.5
Severity:
HIGH
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.