CVE-2021-27493
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/04/2022
Last modified:
17/04/2025
Description
Philips Vue PACS versions 12.2.x.x and prior does not ensure or incorrectly ensures structured messages or data are well formed and that certain security properties are met before being read from an upstream component or sent to a downstream component.
Impact
Base Score 3.x
6.10
Severity 3.x
MEDIUM
Base Score 2.0
6.40
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:philips:myvue:*:*:*:*:*:*:*:* | 12.2.1.5 (excluding) | |
| cpe:2.3:a:philips:speech:*:*:*:*:*:*:*:* | 12.2.8.0 (excluding) | |
| cpe:2.3:a:philips:vue_motion:*:*:*:*:*:*:*:* | 12.2.1.5 (excluding) | |
| cpe:2.3:a:philips:vue_pacs:*:*:*:*:*:*:*:* | 12.2.8.0 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



