CVE-2025-35032: Mieweb Enterprise Health

Critical severity, CVSS 9.9. EPSS: 0.3% chance of exploitation in the next 30 days.

Medical Informatics Engineering Enterprise Health allows authenticated users to upload arbitrary files. The impact of this behavior depends on how files are accessed. This issue is fixed as of 2025-04-08.

Affected products

  • Mieweb Enterprise Health: version rc202303 only; version rc202309 only; version rc202403 only; version rc202409 only; version rc202503 only

Published 2025-09-29. Last modified 2026-10-09.