CVE-2026-26142

EUVD-2026-35530
Deserialization of untrusted data in Nuance PowerScribe allows an unauthorized attacker to execute code over a network.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 77%
Affected Products (NVD)
VendorProductVersion
microsoftnuance_powerscribe_360
4.0.0
microsoftnuance_powerscribe_360
4.0.1
microsoftnuance_powerscribe_360
4.0.2
microsoftnuance_powerscribe_360
4.0.3
microsoftnuance_powerscribe_360
4.0.4
microsoftnuance_powerscribe_360
4.0.5
microsoftnuance_powerscribe_360
4.0.6
microsoftnuance_powerscribe_360
4.0.7
microsoftnuance_powerscribe_360
4.0.8
microsoftnuance_powerscribe_360
4.0.9
microsoftnuance_powerscribe_one
2019.1
microsoftnuance_powerscribe_one
2019.2
microsoftnuance_powerscribe_one
2019.3
microsoftnuance_powerscribe_one
2019.4
microsoftnuance_powerscribe_one
2019.5
microsoftnuance_powerscribe_one
2019.6
microsoftnuance_powerscribe_one
2019.7
microsoftnuance_powerscribe_one
2019.8
microsoftnuance_powerscribe_one
2019.9
microsoftnuance_powerscribe_one
2019.10
microsoftnuance_powerscribe_one
2023.1:sp2_patch_11
microsoftnuance_powerscribe_one
2023.1:sp3_patch_6
𝑥
= Vulnerable software versions