Philips MRI 1.5T and 3T Incorrect Ownership Assignment
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 5.9epss 0.2%
exploitation probability
0.2%top 87% of all CVEs
observed exploitation
nono source reports it
In short
Philips MRI machines (versions 5.3-5.8.1) have a security flaw that allows unauthorized people to access medical imaging resources they shouldn't be able to reach. This is dangerous because it could expose sensitive patient data or allow tampering with critical medical equipment.
Technical detail
CWE-708 vulnerability in Philips MRI 1.5T and 3T systems fails to properly enforce access control on medical imaging resources. An unauthorized actor can access restricted resources without proper authentication or authorization checks, potentially compromising patient data confidentiality and system integrity.
Summary generated and translated by AI from the official description.
Philips MRI 1.5T and MRI 3T Version 5.3 through 5.8.1 does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N