CVE-2025-64778: Mirion Biodose/nmis

High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.

NMIS/BioDose software V22.02 and previous versions contain executable binaries with plain text hard-coded passwords. These hard-coded passwords could allow unauthorized access to both the application and database.

Affected products

  • Mirion Biodose/nmis: before 23.0 (fixed in 23.0)

Published 2025-12-02. Last modified 2026-09-25.