PT-2022-10190 · Philips · Philips Vue Pacs
Published
2022-04-01
·
Updated
2023-07-07
·
CVE-2021-33020
CVSS v3.1
8.2
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Philips Vue PACS versions 12.2.x.x and prior
Description
The issue concerns the use of a cryptographic key or password past its expiration date, which significantly diminishes safety by increasing the timing window for cracking attacks against that key.
Recommendations
For Philips Vue PACS versions 12.2.x.x and prior, update the cryptographic key or password to a current, valid one to mitigate the risk of cracking attacks.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Philips Vue Pacs