CVE-2025-30398

EUVD-2025-93391
Missing authorization in Nuance PowerScribe allows an unauthorized attacker to disclose information over a network.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.1 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
microsoftCNA
8.1 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N/E:U/RL:O/RC:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 17%
Affected Products (NVD)
VendorProductVersion
microsoftnuance_powerscribe_one
4.0.1
microsoftnuance_powerscribe_one
4.0.2
microsoftnuance_powerscribe_one
4.0.5
microsoftnuance_powerscribe_one
4.0.6
microsoftnuance_powerscribe_one
4.0.7
microsoftnuance_powerscribe_one
4.0.8
microsoftnuance_powerscribe_one
4.0.9
microsoftnuance_powerscribe_one
2019.1
microsoftnuance_powerscribe_one
2019.2
microsoftnuance_powerscribe_one
2019.3
microsoftnuance_powerscribe_one
2019.4
microsoftnuance_powerscribe_one
2019.5
microsoftnuance_powerscribe_one
2019.6
microsoftnuance_powerscribe_one
2019.7
microsoftnuance_powerscribe_one
2019.8
microsoftnuance_powerscribe_one
2019.9
microsoftnuance_powerscribe_one
2019.10
microsoftnuance_powerscribe_one
2023.1:sp2_patch_7
𝑥
= Vulnerable software versions