CVE-2021-43550

MEDIUM

Philips Patient Information Center iX C.02-C.03 & Efficia CM A.01-C.0x - Weak Cryptographic Algorithm

Title source: llm
STIX 2.1

Description

The use of a broken or risky cryptographic algorithm is an unnecessary risk that may result in the exposure of sensitive information, which affects the communications between Patient Information Center iX (PIC iX) Versions C.02 and C.03 and Efficia CM Series Revisions A.01 to C.0x and 4.0.

References (1)

Core 1
Core References
Third Party Advisory, US Government Resource x_refsource_misc
https://www.cisa.gov/uscert/ics/advisories/icsma-21-322-02

Scores

CVSS v3 5.9
EPSS 0.0022
EPSS Percentile 12.2%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:N

Details

CWE
CWE-327
Status published
Products (4)
philips/efficia_cm_firmware 4.0
philips/efficia_cm_firmware a.01 - c.0x
philips/patient_information_center_ix c.02
philips/patient_information_center_ix c.03
Published Dec 27, 2021
Tracked Since Feb 18, 2026