CVE-2025-9229

MEDIUM

MiR <3.0.0 - Info Disclosure

Title source: llm
STIX 2.1

Description

Information disclosure vulnerability in error handling in MiR software prior to version 3.0.0 allows unauthenticated attackers to view detailed error information, such as file paths and other data, via access to verbose error pages.

Scores

CVSS v3 5.3
EPSS 0.0006
EPSS Percentile 17.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-209
Status published
Products (2)
Mobile Industrial Robots/MiR Fleet < 3.0.0
Mobile Industrial Robots/MiR Robots < 3.0.0
Published Aug 20, 2025
Tracked Since Feb 18, 2026