First published: Mon Nov 19 2018(Updated: )
Philips iSite and IntelliSpace PACS, iSite PACS, all versions, and IntelliSpace PACS, all versions. Default credentials and no authentication within third party software may allow an attacker to compromise a component of the system.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Philips IntelliSpace PACS | ||
Philips Isite PACS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-17906 is considered high due to the presence of default credentials and lack of authentication.
To fix CVE-2018-17906, change any default credentials and implement proper authentication measures in the affected systems.
CVE-2018-17906 impacts Philips iSite PACS and IntelliSpace PACS across all versions.
The potential risks of CVE-2018-17906 include unauthorized access to sensitive medical data and potential disruption of services.
Currently, there is no specific patch provided for CVE-2018-17906, and it's recommended to secure the system manually.