Project Subscriptions
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-29703 | Philips MRI 1.5T and MRI 3T Version 5.x.x exposes sensitive information to an actor not explicitly authorized to have access. |
Solution
No solution given by the vendor.
Workaround
Philips released a software upgrade version 5.8.2 to remediate these vulnerabilities and can be referenced by FCO78100619. As an interim mitigation to these vulnerabilities, Philips recommends the following: Users should operate all Philips deployed and supported products within Philips authorized specifications, including physical and logical controls. Only allowed personnel are permitted in the vicinity of the product. Refer to the Philips instructions for use (IFU) available on InCenter https://incenter.medical.philips.com. Users with questions about their specific MRI product should contact a Philips service support team or regional service support. Philips contact information is available at the Philips customer service solutions website http://philips.com/productsecurity or by calling 1-800-722-9377. For more information regarding these vulnerabilities, see the Philips product security advisory website http://philips.com/productsecurity. Users can also visit the Philips product security website for the latest security information for Philips products.
Thu, 02 Apr 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-200 | |
| Metrics |
cvssV3_1
|
cvssV3_1
|
Thu, 02 Apr 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Philips MRI 1.5T and MRI 3T Version 5.x.x exposes sensitive information to an actor not explicitly authorized to have access. | Philips MRI 1.5T and MRI 3T Version 5.3 through 5.8.1 does not restrict or incorrectly restricts access to a resource from an unauthorized actor. |
| Weaknesses | CWE-552 | |
| CPEs | cpe:2.3:a:philips:mri_1.5t:*:*:*:*:*:*:*:* cpe:2.3:a:philips:mri_3t:*:*:*:*:*:*:*:* |
|
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-04-02T13:45:03.309Z
Reserved: 2021-11-11T00:00:00.000Z
Link: CVE-2021-42744
No data.
Status : Modified
Published: 2021-11-19T19:15:09.147
Modified: 2026-04-02T14:16:21.067
Link: CVE-2021-42744
No data.
OpenCVE Enrichment
No data.
EUVD