Philips Vue PACS versions 12.2.x.x and prior uses a cryptographic key or password past its expiration date, which diminishes its safety significantly by increasing the timing window for cracking attacks against that key.
2022-04-01T23:15:10.193
2024-11-21T06:08:08.403
Modified
CVSSv3.1: 8.2 (HIGH)
AV:N/AC:L/Au:N/C:P/I:N/A:N
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | philips | myvue | < 12.2.1.5 | Yes |
Application | philips | speech | < 12.2.8.0 | Yes |
Application | philips | vue_motion | < 12.2.1.5 | Yes |
Application | philips | vue_pacs | < 12.2.8.0 | Yes |