CVE-2021-43548

MEDIUM

Patient Information Center iX <C.03 - Info Disclosure

Title source: llm
STIX 2.1

Description

Patient Information Center iX (PIC iX) Versions C.02 and C.03 receives input or data, but does not validate or incorrectly validates that the input has the properties required to process the data safely and correctly.

References (1)

Core 1
Core References
Third Party Advisory, US Government Resource x_refsource_misc
https://www.cisa.gov/uscert/ics/advisories/icsma-21-322-02

Scores

CVSS v3 6.5
EPSS 0.0037
EPSS Percentile 28.5%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-20
Status published
Products (2)
philips/patient_information_center_ix c.02
philips/patient_information_center_ix c.03
Published Dec 27, 2021
Tracked Since Feb 18, 2026