Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
philips myvue - vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2021-33020
Philips Vue PACS versions 12.2.x.x and prior uses a cryptographic key or password past its expiration date, which diminishes its safety significantly by increasing the timing window for cracking attacks against that key.
Philips Vue Pacs
Philips Vue Motion
Philips Speech
Philips Myvue
7.5
CVSSv3
CVE-2021-33024
Philips Vue PACS versions 12.2.x.x and prior transmits or stores authentication credentials, but it uses an insecure method susceptible to unauthorized interception and/or retrieval.
Philips Myvue
Philips Speech
Philips Vue Motion
Philips Vue Pacs
7.5
CVSSv3
CVE-2021-33022
Philips Vue PACS versions 12.2.x.x and prior transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
Philips Myvue
Philips Speech
Philips Vue Motion
Philips Vue Pacs
6.5
CVSSv3
CVE-2021-27493
Philips Vue PACS versions 12.2.x.x and prior does not ensure or incorrectly ensures structured messages or data are well formed and that certain security properties are met before being read from an upstream component or sent to a downstream component.
Philips Vue Pacs
Philips Vue Motion
Philips Speech
Philips Myvue
6.5
CVSSv3
CVE-2021-39369
In Philips (formerly Carestream) Vue MyVue PACS up to and including 12.2.x.x, the VideoStream function allows Path Traversal by authenticated users to access files stored outside of the web root.
Philips Vue Motion
Philips Vue Pacs -
Philips Speech -
Philips Myvue -
7.5
CVSSv3
CVE-2021-33018
The use of a broken or risky cryptographic algorithm in Philips Vue PACS versions 12.2.x.x and prior is an unnecessary risk that may result in the exposure of sensitive information.
Philips Myvue
Philips Speech
Philips Vue Motion
Philips Vue Pacs
9.8
CVSSv3
CVE-2021-27497
Philips Vue PACS versions 12.2.x.x and prior does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.
Philips Myvue
Philips Speech
Philips Vue Motion
Philips Vue Pacs
9.8
CVSSv3
CVE-2021-27501
Philips Vue PACS versions 12.2.x.x and prior does not follow certain coding rules for development, which can lead to resultant weaknesses or increase the severity of the associated vulnerabilities.
Philips Myvue
Philips Speech
Philips Vue Motion
Philips Vue Pacs
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7028
memory leak
log injection
CVE-2024-3400
CVE-2022-48695
CVE-2022-48675
CVE-2024-34487
CVE-2024-33792
spoof
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started