Page 2 of 11 results (0.005 seconds)

CVSS: 7.5EPSS: 0%CPEs: 4EXPL: 0

Philips Vue PACS versions 12.2.x.x and prior transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors. Philips Vue PACS versiones 12.2.x.x y anteriores, transmite datos confidenciales o críticos para la seguridad en texto sin cifrar en un canal de comunicación que puede ser rastreado por actores no autorizados • http://www.philips.com/productsecurity https://www.cisa.gov/uscert/ics/advisories/icsma-21-187-01 • CWE-319: Cleartext Transmission of Sensitive Information •

CVSS: 9.8EPSS: 0%CPEs: 4EXPL: 0

Philips Vue PACS versions 12.2.x.x and prior does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product. Philips Vue PACS versiones 12.2.x.x y anteriores, no usa o usa de forma incorrecta un mecanismo de protección que proporciona una defensa suficiente contra los ataques dirigidos contra el producto • http://www.philips.com/productsecurity https://www.cisa.gov/uscert/ics/advisories/icsma-21-187-01 •

CVSS: 7.5EPSS: 0%CPEs: 4EXPL: 0

Philips Vue PACS versions 12.2.x.x and prior transmits or stores authentication credentials, but it uses an insecure method susceptible to unauthorized interception and/or retrieval. Philips Vue PACS versiones 12.2.x.x y anteriores, transmite o almacena credenciales de autenticación, pero usa un método no seguro susceptible de ser interceptado y/o recuperado sin autorización • http://www.philips.com/productsecurity https://www.cisa.gov/uscert/ics/advisories/icsma-21-187-01 • CWE-522: Insufficiently Protected Credentials •

CVSS: 8.2EPSS: 0%CPEs: 4EXPL: 0

Philips Vue PACS versions 12.2.x.x and prior uses a cryptographic key or password past its expiration date, which diminishes its safety significantly by increasing the timing window for cracking attacks against that key. Philips Vue PACS versiones 12.2.x.x y anteriores, de usan una clave criptográfica o una contraseña que ya ha caducado, lo que disminuye significativamente su seguridad al aumentar la ventana de tiempo para los ataques de cracking contra esa clave • http://www.philips.com/productsecurity https://www.cisa.gov/uscert/ics/advisories/icsma-21-187-01 • CWE-324: Use of a Key Past its Expiration Date CWE-672: Operation on a Resource after Expiration or Release •

CVSS: 9.8EPSS: 0%CPEs: 4EXPL: 0

Philips Vue PACS versions 12.2.x.x and prior does not follow certain coding rules for development, which can lead to resultant weaknesses or increase the severity of the associated vulnerabilities. Philips Vue PACS versiones 12.2.x.x y anteriores, no siguen determinadas reglas de codificación para el desarrollo, lo que puede conllevar a debilidades resultantes o aumentar la gravedad de las vulnerabilidades asociadas • http://www.philips.com/productsecurity https://www.cisa.gov/uscert/ics/advisories/icsma-21-187-01 • CWE-710: Improper Adherence to Coding Standards •