Vulnerabilidades en Philips

88 resultados
Análisis Vexday

Com 88 CVEs catalogadas e nenhuma em exploração ativa no CISA KEV, a taxa de exploração confirmada da Philips está abaixo da média geral do catálogo, o que representa um perfil de risco relativamente contido no momento. Não há registros de vulnerabilidades críticas, PoCs públicas disponíveis ou novas ocorrências nos últimos 90 dias, indicando ausência de pressão ofensiva imediata. O maior score EPSS observado é 0,0625, registrado na CVE-2018-5474, que permanece como a vulnerabilidade de maior atenção no portfólio atual. O tipo de falha mais recorrente é CWE-20 (validação inadequada de entrada), padrão que merece atenção contínua em processos de desenvolvimento e revisão de código.

CVE-2021-33018HIGHPhilips Vue PACS Use of a Broken or Risky Cryptographic AlgorithmEPSS 0.6%CVE-2020-16222Philips Patient Monitoring Devices Improper AuthenticationEPSS 0.5%CVE-2018-5470Philips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have an unquoted search path or element vulnerability that has been identified,EPSS 0.5%CVE-2018-8863MEDIUMPhilips EncoreAnywhere Exposure of Sensitive Information to an Unauthorized ActorEPSS 0.5%CVE-2021-23173LOWICSMA-22-006-01 Philips Engage SoftwareEPSS 0.5%CVE-2020-12023LOWPhilips IntelliBridge Enterprise IBE Insertion of Sensitive Information into Log FileEPSS 0.5%CVE-2026-3556HIGHPhilips Hue Bridge HomeKit Pair-Setup Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.5%CVE-2018-14799In Philips PageWriter TC10, TC20, TC30, TC50, TC70 Cardiographs, all versions prior to May 2018, the PageWriter device does not sanitize datEPSS 0.5%CVE-2026-3561HIGHPhilips Hue Bridge hk_hap characteristics Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-3557HIGHPhilips Hue Bridge hap_pair_verify_handler Sub-TLV Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.5%CVE-2020-7360HIGHPhilips SmartControl DLL HijackingEPSS 0.5%CVE-2026-3560HIGHPhilips Hue Bridge HomeKit hk_hap_pair_storage_put Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.5%CVE-2020-14525LOWPhilips Clinical Collaboration Platform Improper Neutralization of Script in Attributes in a Web PageEPSS 0.5%CVE-2021-32966LOWPhilips Interoperability Solution XDS - Clear Text Transmission of Sensitive InformationEPSS 0.5%CVE-2021-33017HIGHPhilips IntelliBridge EC 40 and EC 80 Hub Authentication Bypass Using an Alternate Path or ChannelEPSS 0.5%CVE-2018-14789In Philips' IntelliSpace Cardiovascular (ISCV) products (ISCV Version 3.1 or prior and Xcelera Version 4.1 or prior), an unquoted search patEPSS 0.4%CVE-2018-14801In Philips PageWriter TC10, TC20, TC30, TC50, TC70 Cardiographs, all versions prior to May 2018, an attacker with both the superuser passworEPSS 0.4%CVE-2018-8861Vulnerabilities within the Philips Brilliance CT kiosk environment (Brilliance 64 version 2.6.2 and prior, Brilliance iCT versions 4.1.6 andEPSS 0.4%CVE-2026-3558HIGHPhilips Hue Bridge HomeKit Accessory Protocol Transient Pairing Mode Authentication Bypass VulnerabilityEPSS 0.4%CVE-2026-3559HIGHPhilips Hue Bridge HomeKit Accessory Protocol Static Nonce Authentication Bypass VulnerabilityEPSS 0.4%