CVE-2021-33017 – Philips IntelliBridge EC 40 and EC 80 Hub Authentication Bypass Using an Alternate Path or Channel
https://notcve.org/view.php?id=CVE-2021-33017
The standard access path of the IntelliBridge EC 40 and 60 Hub (C.00.04 and prior) requires authentication, but the product has an alternate path or channel that does not require authentication. La ruta de acceso estándar de IntelliBridge EC 40 and 60 Hub (versiones C.00.04 y anteriores) requiere autenticación, pero el producto presenta una ruta o canal alternativo que no requiere autenticación • https://www.cisa.gov/uscert/ics/advisories/icsma-21-322-01 • CWE-288: Authentication Bypass Using an Alternate Path or Channel •
CVE-2021-32993 – Philips IntelliBridge EC 40 and EC 80 Hub Use of Hard-coded Credentials
https://notcve.org/view.php?id=CVE-2021-32993
IntelliBridge EC 40 and 60 Hub (C.00.04 and prior) contains hard-coded credentials, such as a password or a cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. El IntelliBridge EC 40 y 60 Hub (versiones C.00.04 y anteriores) contiene credenciales embebidas para su propia autenticación de entrada, la comunicación de salida a componentes externos o el cifrado de datos internos • https://www.cisa.gov/uscert/ics/advisories/icsma-21-322-01 • CWE-798: Use of Hard-coded Credentials •
CVE-2021-26248 – Philips MRI 1.5T and 3T Incorrect Ownership Assignment
https://notcve.org/view.php?id=CVE-2021-26248
Philips MRI 1.5T and MRI 3T Version 5.x.x assigns an owner who is outside the intended control sphere to a resource. Philips MRI 1.5T y MRI 3T versión 5.x.x, asigna a un recurso un propietario que está fuera de la esfera de control prevista • https://us-cert.cisa.gov/ics/advisories/icsma-21-313-01 https://www.usa.philips.com/healthcare/about/customer-support/product-security • CWE-708: Incorrect Ownership Assignment •
CVE-2021-42744 – Philips MRI 1.5T and 3T Information Exposure
https://notcve.org/view.php?id=CVE-2021-42744
Philips MRI 1.5T and MRI 3T Version 5.x.x exposes sensitive information to an actor not explicitly authorized to have access. Philips MRI 1.5T y MRI 3T versión 5.x.x, expone información confidencial a un actor no autorizado explícitamente a tener acceso • https://us-cert.cisa.gov/ics/advisories/icsma-21-313-01 https://www.usa.philips.com/healthcare/about/customer-support/product-security • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2021-26262 – Philips MRI 1.5T and 3T Improper Access Control
https://notcve.org/view.php?id=CVE-2021-26262
Philips MRI 1.5T and MRI 3T Version 5.x.x does not restrict or incorrectly restricts access to a resource from an unauthorized actor. Philips MRI 1.5T y MRI 3T versión 5.x.x, no restringe o restringe incorrectamente el acceso a un recurso de un actor no autorizado • https://us-cert.cisa.gov/ics/advisories/icsma-21-313-01 https://www.usa.philips.com/healthcare/about/customer-support/product-security • CWE-284: Improper Access Control •