PT-2022-10191 · Philips · Philips Vue Pacs

Published

2022-04-01

·

Updated

2022-04-08

·

CVE-2021-33022

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Philips Vue PACS versions 12.2.x.x and prior
Description The issue concerns the transmission of sensitive or security-critical data in cleartext in a communication channel, making it possible for unauthorized actors to intercept this data.
Recommendations For Philips Vue PACS versions 12.2.x.x and prior, consider implementing encryption for sensitive data transmission to prevent unauthorized access. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Cleartext Transmission of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-33022

Affected Products

Philips Vue Pacs