CVE-2021-33024

Severity CVSS v4.0:
Pending analysis
Type:
CWE-522 Insufficiently Protected Credentials
Publication date:
01/04/2022
Last modified:
08/04/2022

Description

Philips Vue PACS versions 12.2.x.x and prior transmits or stores authentication credentials, but it uses an insecure method susceptible to unauthorized interception and/or retrieval.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:philips:myvue:*:*:*:*:*:*:*:* 12.2.1.5 (excluding)
cpe:2.3:a:philips:speech:*:*:*:*:*:*:*:* 12.2.8.0 (excluding)
cpe:2.3:a:philips:vue_motion:*:*:*:*:*:*:*:* 12.2.1.5 (excluding)
cpe:2.3:a:philips:vue_pacs:*:*:*:*:*:*:*:* 12.2.8.0 (excluding)