Philips Patient Information Center iX (PIC iX) and Efficia CM Series Use of Hard-coded Cryptographic Key
Vulnerability Description
The use of a hard-coded cryptographic key significantly increases the possibility encrypted data may be recovered from the Patient Information Center iX (PIC iX) Versions B.02, C.02, and C.03.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-43552
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Younes Dragoni, Andrea Palanca and Ivan Speziale of Nozomi Networks
More from Philips
View All →Affected Vendor
Philips
View all reports →