CVE-2025-14096

8.4

Radiometer Medical Aps · ABL90 FLEX, ABL90 FLEX PLUS, AQT90 FLEX, ABL800 BASIC, and ABL800 FLEX Analyzers

Radiometer medical analyzers running Windows 7 or Windows XP are susceptible to hard-coded credential extraction by attackers with physical access to the device.

Executive summary

Critical vulnerabilities in Radiometer medical analyzers allow attackers with physical access to extract sensitive credentials due to design weaknesses and insecure operating system configurations.

Vulnerability

The vulnerability stems from the use of hard-coded credentials and improper privilege management within legacy operating systems. An attacker with physical access to the medical analyzer can leverage these weaknesses to bypass standard security controls and gain unauthorized access to sensitive credential information.

Business impact

The exploitation of this vulnerability poses a significant risk to the integrity and confidentiality of medical data, as an attacker could potentially gain administrative control over the analyzer. Given the CVSS score of 8.4, this represents a high-severity risk that could lead to unauthorized system access, potential data exfiltration, or service disruption in a critical healthcare environment.

Remediation

Immediate Action: Contact your local Radiometer representative immediately to discuss the permanent solution and mitigation steps for your specific device configuration.

Proactive Monitoring: Restrict physical access to the analyzers to authorized personnel only, and maintain strict surveillance of the areas where these devices are deployed.

Compensating Controls: Implement physical security measures such as locked cabinets or restricted-access rooms to prevent unauthorized individuals from obtaining the physical interaction required to trigger this vulnerability.

Exploitation status

Public Exploit Available: Unknown

Analyst recommendation

Given the sensitivity of the medical environment and the high CVSS score, organizations must treat this vulnerability with urgency. Ensure that physical access controls are strictly enforced while coordinating directly with Radiometer representatives to implement the permanent remediation once it becomes available for your specific unit.

Sources

Originally found and disclosed by Florian Hauser and Fabian Weber from CODE WHITE GmbH, per the CVE Program record.