CVE-2026-17583

HIGHCVSS 8.4/10

Last modified

CVE-2026-17583 is a high-severity vulnerability rated 8.4/10 on the CVSS scale. The affected Thermo Fisher Applied Biosystems Genetic Analyzers are vulnerable because .fsa/.hid output files can be edited. An attacker could tamper with these files, altering DNA data and resulting in inaccurate DNA test outcomes..

Description

The affected Thermo Fisher Applied Biosystems Genetic Analyzers are vulnerable because .fsa/.hid output files can be edited. An attacker could tamper with these files, altering DNA data and resulting in inaccurate DNA test outcomes.

Metrics

CVSS 3.1
8.4/10

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS 4.0
8.3/10

CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:H/SC:N/SI:H/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Weakness Enumeration

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
Thermo FisherApplied Biosystems 3500/3500xL Series Data Collection Software<= 4.0.2
Thermo FisherApplied Biosystems 3730/3730xL Series Data Collection Software<= 5.0.2
Thermo FisherApplied Biosystems SeqStudio Genetic Analyzer Data Collection Software<= 1.2.5
Thermo FisherApplied Biosystems SeqStudio Flex Series Instrument Software<= 1.2.0
Thermo FisherApplied Biosystems GeneMapper ID-X Software<= 1.7.3
Thermo FisherApplied Biosystems 3130 Series Data Collection Software<= 4.1
Thermo FisherABI PRISM 3100/3100-Avant Data Collection Software<= 2.0
Thermo FisherABI PRISM 310 Data Collection Software<= 3.1

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-17583?
The affected Thermo Fisher Applied Biosystems Genetic Analyzers are vulnerable because .fsa/.hid output files can be edited. An attacker could tamper with these files, altering DNA data and resulting in inaccurate DNA test outcomes.
How severe is CVE-2026-17583?
CVE-2026-17583 has a CVSS score of 8.4/10 (HIGH severity).
How do I fix CVE-2026-17583?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-17583?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST