Improper Input Validation vulnerability in Roche Diagnostics navify Monitoring allows an attacker to manipulate input data, which may lead to a denial of service (DoS) due to negatively impacting the server's performance. This vulnerability has no impact on data confidentiality or integrity. This issue affects navify Monitoring before 1.08.00.
History

Thu, 07 Aug 2025 07:15:00 +0000

Type Values Removed Values Added
First Time appeared Roche
Roche navify Monitoring
Vendors & Products Roche
Roche navify Monitoring

Tue, 05 Aug 2025 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 05 Aug 2025 17:00:00 +0000

Type Values Removed Values Added
Description Improper Input Validation vulnerability in Roche Diagnostics navify Monitoring allows an attacker to manipulate input data, which may lead to a denial of service (DoS) due to negatively impacting the server's performance. This vulnerability has no impact on data confidentiality or integrity. This issue affects navify Monitoring before 1.08.00.
Title navify Monitoring API input validation
Weaknesses CWE-20
References
Metrics cvssV4_0

{'score': 7.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/S:N/AU:Y/R:U/V:D/RE:M/U:Green'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Roche

Published: 2025-08-05T16:53:05.316Z

Updated: 2025-08-05T20:32:32.486Z

Reserved: 2025-07-15T11:09:36.967Z

Link: CVE-2025-7674

cve-icon Vulnrichment

Updated: 2025-08-05T20:32:29.340Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-08-05T17:15:29.700

Modified: 2025-08-05T21:06:25.813

Link: CVE-2025-7674

cve-icon Redhat

No data.