Skip to main content

Vendor archive

philips CVEs

Beta · best-effort

115 CVEs tagged to vendor philips10 Critical, 49 High, 45 Medium, 11 Low, 0 Unrated.

CVE-2025-27955

Published Jun 2, 2025

Clinical Collaboration Platform 12.2.1.5 has a weak logout system where the session token remains valid after logout and allows a remote attacker to obtain sensitive information a…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-27954

Published Jun 2, 2025

An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the usertoken function of default.aspx.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-27953

Published Jun 2, 2025

An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the session management component.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-40704

Published Jul 18, 2024

The product does not require unique and complex passwords to be created during installation. Using Philips's default password could jeopardize the PACS system if the password wa…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-8863

Published Nov 9, 2023

The HTTP header in Philips EncoreAnywhere contains data an attacker may be able to use to gain sensitive information.

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-32966

Published May 25, 2022

Philips Interoperability Solution XDS versions 2.5 through 3.11 and 2018-1 through 2021-1 are vulnerable to clear text transmission of sensitive information when configured to use…

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-23173

Published Jan 10, 2022

The affected product is vulnerable to an improper access control, which may allow an authenticated user to gain unauthorized access to sensitive data.

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-43552

Published Dec 27, 2021

The use of a hard-coded cryptographic key significantly increases the possibility encrypted data may be recovered from the Patient Information Center iX (PIC iX) Versions B.02, C.…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-25 of 115 CVEsPage 1 of 5