MEDIUM🇵🇱 Wersja polska

CVE-2021-43550

CVSS 5.9v3.1pub. 2021-12-27upd. 2024-11-21

The use of a broken or risky cryptographic algorithm is an unnecessary risk that may result in the exposure of sensitive information, which affects the communications between Patient Information Center iX (PIC iX) Versions C.02 and C.03 and Efficia CM Series Revisions A.01 to C.0x and 4.0.

CVSS Vector
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:N
  • Philips Efficia Cm

    HW
    Philips
    all versions
  • Philips Efficia Cm Firmware

    OS
    Philips
    4.0a.01 – c.0x
  • Philips Patient Information Center Ix

    APP
    Philips
    c.02c.03
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2020-16222HIGH8.8same product

In Patient Information Center iX (PICiX) Version B.02, C.02, C.03, and PerformanceBridge Focal Point Version ...

CVE-2021-43552MEDIUM6.1same product

The use of a hard-coded cryptographic key significantly increases the possibility encrypted data may be recove...

CVE-2021-43548MEDIUM6.5same product

Patient Information Center iX (PIC iX) Versions C.02 and C.03 receives input or data, but does not validate or...

CVE-2020-16224MEDIUM6.5same product

In Patient Information Center iX (PICiX) Versions C.02, C.03, the software parses a formatted message or stru...

CVE-2020-16220MEDIUM4.3same product

In Patient Information Center iX (PICiX) Versions C.02, C.03, PerformanceBridge Focal Point Version A.01, the...