Vulnerability index

Browse CVEs

57 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Clinical Collaboration Platform MEDIUM 6.5
CVE-2025-27954

An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the user…

Mitigation only
Fix from $1,600 2025-06-02
Clinical Collaboration Platform MEDIUM 6.5
CVE-2025-27955

Clinical Collaboration Platform 12.2.1.5 has a weak logout system where the session token remains valid after logout and allows a remote attacker to …

Mitigation only
Fix from $1,600 2025-06-02
Clinical Collaboration Platform MEDIUM 6.5
CVE-2025-27953

An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the sess…

Mitigation only
Fix from $1,600 2025-06-02
Intellibridge Ec40 Firmware HIGH 8.8
CVE-2021-32993

IntelliBridge EC 40 and 60 Hub (C.00.04 and prior) contains hard-coded credentials, such as a password or a cryptographic key, which it uses for its …

Mitigation only
Fix from $1,950 2021-12-27
Intellibridge Ec40 Firmware HIGH 8.8
CVE-2021-33017

The standard access path of the IntelliBridge EC 40 and 60 Hub (C.00.04 and prior) requires authentication, but the product has an alternate path or …

Mitigation only
Fix from $1,950 2021-12-27
Patient Information Center Ix MEDIUM 6.5
CVE-2021-43548

Patient Information Center iX (PIC iX) Versions C.02 and C.03 receives input or data, but does not validate or incorrectly validates that the input h…

Mitigation only
Fix from $1,600 2021-12-27
Patient Information Center Ix MEDIUM 6.5
CVE-2021-43550

The use of a broken or risky cryptographic algorithm is an unnecessary risk that may result in the exposure of sensitive information, which affects t…

Mitigation only
Fix from $1,600 2021-12-27
Patient Information Center Ix MEDIUM 5.5
CVE-2021-43552

The use of a hard-coded cryptographic key significantly increases the possibility encrypted data may be recovered from the Patient Information Center…

Mitigation only
Fix from $1,600 2021-12-27
Tasy Electronic Medical Record HIGH 8.8
CVE-2021-39375

Philips Healthcare Tasy Electronic Medical Record (EMR) 3.06 allows SQL injection via the WAdvancedFilter/getDimensionItemsByCode FilterValue paramet…

No fix yet
Fix from $1,950 2021-08-24
Tasy Electronic Medical Record HIGH 8.8
CVE-2021-39376

Philips Healthcare Tasy Electronic Medical Record (EMR) 3.06 allows SQL injection via the CorCad_F2/executaConsultaEspecifico IE_CORPO_ASSIST or CD_U…

No fix yet
Fix from $1,950 2021-08-24
Coronary Tools MEDIUM 6.5
CVE-2020-27298

Philips Interventional Workspot (Release 1.3.2, 1.4.0, 1.4.1, 1.4.3, 1.4.5), Coronary Tools/Dynamic Coronary Roadmap/Stentboost Live (Release 1.0), V…

Mitigation only
Fix from $1,600 2021-01-26
Hue Firmware HIGH 7.5
CVE-2018-7580

Philips Hue is vulnerable to a Denial of Service attack. Sending a SYN flood on port tcp/80 will freeze Philips Hue's hub and it will stop responding…

No fix yet
Fix from $1,950 2020-12-21
Patient Information Center Ix MEDIUM 6.8
CVE-2020-16212

In Patient Information Center iX (PICiX) Versions B.02, C.02, C.03, the product exposes a resource to the wrong control sphere, providing unintended …

Mitigation only
Fix from $1,600 2020-09-11
Patient Information Center Ix MEDIUM 6.5
CVE-2020-16216

In IntelliVue patient monitors MX100, MX400-550, MX600, MX700, MX750, MX800, MX850, MP2-MP90, and IntelliVue X2 and X3 Versions N and prior, the pr…

Mitigation only
Fix from $1,600 2020-09-11
Patient Information Center Ix MEDIUM 6.5
CVE-2020-16224

In Patient Information Center iX (PICiX) Versions C.02, C.03, the software parses a formatted message or structure but does not handle or incorrect…

Mitigation only
Fix from $1,600 2020-09-11
Patient Information Center Ix HIGH 8.8
CVE-2020-16222

In Patient Information Center iX (PICiX) Version B.02, C.02, C.03, and PerformanceBridge Focal Point Version A.01, when an actor claims to have a g…

No fix yet
Fix from $1,950 2020-09-11
Patient Information Center Ix MEDIUM 6.4
CVE-2020-16228

In Patient Information Center iX (PICiX) Versions C.02 and C.03, PerformanceBridge Focal Point Version A.01, IntelliVue patient monitors MX100, MX4…

Mitigation only
Fix from $1,600 2020-09-11
Patient Information Center Ix MEDIUM 5.0
CVE-2020-16214

In Patient Information Center iX (PICiX) Versions B.02, C.02, C.03, the software saves user-provided information into a comma-separated value (CSV)…

Mitigation only
Fix from $1,600 2020-09-11
Veradius Unity Firmware MEDIUM 6.5
CVE-2019-18263

An issue was found in Philips Veradius Unity, Pulsera, and Endura Dual WAN Router, Veradius Unity (718132) with wireless option (shipped between 2016…

Mitigation only
Fix from $1,600 2019-12-20
Intellibridge Ec40 Firmware MEDIUM 6.5
CVE-2019-18241

In Philips IntelliBridge EC40 and EC80, IntelliBridge EC40 Hub all versions, and IntelliBridge EC80 Hub all versions, the SSH server running on the a…

Mitigation only
Fix from $1,600 2019-11-26
Taolight Smart Wi Fi Wiz Connected Led Bulb 9290022656 Firmware HIGH 7.5
CVE-2019-18980

On Signify Philips Taolight Smart Wi-Fi Wiz Connected LED Bulb 9290022656 devices, an unprotected API lets remote users control the bulb's operation.…

No fix yet
Fix from $1,950 2019-11-14
Intellispace Perinatal MEDIUM 6.8
CVE-2019-13546

In IntelliSpace Perinatal, Versions K and prior, a vulnerability within the IntelliSpace Perinatal application environment could enable an unauthoriz…

Mitigation only
Fix from $1,600 2019-10-25
Intellivue Mp Monitors Mp20 Mp90 Firmware HIGH 7.2
CVE-2019-13530

Philips IntelliVue WLAN, portable patient monitors, WLAN Version A, Firmware A.03.09, WLAN Version A, Firmware A.03.09, Part #: M8096-67501, WLAN Ver…

Mitigation only
Fix from $1,950 2019-09-12
Intellivue Mp Monitors Mp20 Mp90 Firmware HIGH 7.2
CVE-2019-13534

Philips IntelliVue WLAN, portable patient monitors, WLAN Version A, Firmware A.03.09, WLAN Version A, Firmware A.03.09, Part #: M8096-67501, WLAN Ver…

Mitigation only
Fix from $1,950 2019-09-12
Intellispace Pacs HIGH 8.8
CVE-2018-17906

Philips iSite and IntelliSpace PACS, iSite PACS, all versions, and IntelliSpace PACS, all versions. Default credentials and no authentication within …

No fix yet
Fix from $1,950 2018-11-19
E Alert Firmware CRITICAL 9.8
CVE-2018-8856

Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The software contains hard-coded cryptographic key, which it uses for encryption o…

Mitigation only
Fix from $2,300 2018-09-26
E Alert Firmware HIGH 7.5
CVE-2018-8854

Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The software does not properly restrict the size or amount of resources requested …

No fix yet
Fix from $1,950 2018-09-26
E Alert Firmware CRITICAL 9.8
CVE-2018-8850

Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The software does not validate input properly, allowing an attacker to craft the i…

Mitigation only
Fix from $2,300 2018-09-26
E Alert Firmware HIGH 8.8
CVE-2018-8852

Philips e-Alert Unit (non-medical device), Version R2.1 and prior. When authenticating a user or otherwise establishing a new user session, the softw…

Mitigation only
Fix from $1,950 2018-09-26
E Alert Firmware HIGH 8.8
CVE-2018-8844

Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The web application does not, or cannot, sufficiently verify whether a well-formed…

No fix yet
Fix from $1,950 2018-09-26