Nov 2025: Nuance PowerScribe 360 Information Disclosure Vulnerability
CVE-2025-30398 Published on November 11, 2025

Nuance PowerScribe 360 Information Disclosure Vulnerability
Missing authorization in Nuance PowerScribe allows an unauthorized attacker to disclose information over a network.

Vendor Advisory NVD

Weakness Type

What is an AuthZ Vulnerability?

The software does not perform an authorization check when an actor attempts to access a resource or perform an action.

CVE-2025-30398 has been classified to as an AuthZ vulnerability or weakness.


Products Associated with CVE-2025-30398

stack.watch emails you whenever new vulnerabilities are published in Microsoft Nuance Powerscribe 360 or Microsoft Nuance Powerscribe One. Just hit a watch button to start following.

 
 

Affected Versions

Microsoft Nuance PowerScribe 360 version 4.0.1: Microsoft Nuance PowerScribe 360 version 4.0.2: Microsoft Nuance PowerScribe 360 version 4.0.3: Microsoft Nuance PowerScribe 360 version 4.0.4: Microsoft Nuance PowerScribe 360 version 4.0.5: Microsoft Nuance PowerScribe 360 version 4.0.6: Microsoft Nuance PowerScribe 360 version 4.0.7: Microsoft Nuance PowerScribe 360 version 4.0.8: Microsoft Nuance PowerScribe 360 version 4.0.9: Microsoft Nuance PowerScribe One version 2019.1: Microsoft Nuance PowerScribe One version 2019.10: Microsoft Nuance PowerScribe One version 2019.2: Microsoft Nuance PowerScribe One version 2019.3: Microsoft Nuance PowerScribe One version 2019.4: Microsoft Nuance PowerScribe One version 2019.5: Microsoft Nuance PowerScribe One version 2019.6: Microsoft Nuance PowerScribe One version 2019.7: Microsoft Nuance PowerScribe One version 2019.8: Microsoft Nuance PowerScribe One version 2019.9: Microsoft PowerScribe One version 2023.1 SP2 Patch 7:

Exploit Probability

EPSS
0.07%
Percentile
20.48%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.