Skip to content
Signals
NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07

Vendors · philips

philips

· Vendor

Total CVEs

115

Critical

0

Products

169

Search All CVEs →

115

Products (169)

patient information center ix11 CVEsintellispace portal11 CVEse-alert firmware10 CVEshue bridge v29 CVEshue bridge v2 firmware9 CVEsvue pacs9 CVEsmyvue8 CVEsvue motion8 CVEsspeech8 CVEsclinical collaboration platform8 CVEsintellivue mx1005 CVEsintellivue x3 firmware5 CVEsintellivue x35 CVEsintellivue x2 firmware5 CVEsintellivue mx800 firmware5 CVEsintellivue mx8005 CVEsintellivue mx700 firmware5 CVEsintellivue mx7005 CVEsintellivue mx550 firmware5 CVEsintellivue mx5505 CVEsintellivue mx400 firmware5 CVEsintellivue mx4005 CVEsintellivue mx100 firmware5 CVEsintellivue x25 CVEsintellispace cardiovascular4 CVEsperformancebridge focal point4 CVEsmri 3t3 CVEs brilliance ct big bore3 CVEs brilliance ct big bore firmware3 CVEsavalon fetal\/maternal monitors fm203 CVEsavalon fetal\/maternal monitors fm20 firmware3 CVEsavalon fetal\/maternal monitors fm303 CVEsavalon fetal\/maternal monitors fm30 firmware3 CVEsavalon fetal\/maternal monitors fm403 CVEsavalon fetal\/maternal monitors fm40 firmware3 CVEsavalon fetal\/maternal monitors fm503 CVEsavalon fetal\/maternal monitors fm50 firmware3 CVEsbrilliance 643 CVEsbrilliance firmware 643 CVEsbrilliance ict3 CVEsbrilliance ict firmware3 CVEsbrilliance ict sp3 CVEsbrilliance ict sp firmware3 CVEsin.sight b120\\373 CVEsintellibridge ec403 CVEsintellibridge ec40 firmware3 CVEsintellibridge ec803 CVEsintellibridge ec80 firmware3 CVEsintellivue mp23 CVEsintellivue mp2 firmware3 CVEsintellivue mp303 CVEsintellivue mp30 firmware3 CVEsintellivue mp503 CVEsintellivue mp50 firmware3 CVEsintellivue mp703 CVEsintellivue mp70 firmware3 CVEsintellivue mx4503 CVEsintellivue mx450 firmware3 CVEsintellivue mx5003 CVEsintellivue mx500 firmware3 CVEsintellivue np903 CVEsintellivue np90 firmware3 CVEsmri 1.5t3 CVEsmri 1.5t firmware3 CVEsmri 3t firmware3 CVEssuresigns vs43 CVEssuresigns vs4 firmware3 CVEsxcelera3 CVEsintellivue mp2-mp902 CVEsintellivue mp2-mp90 firmware2 CVEstasy electronic medical record2 CVEstasy emr2 CVEsintellivue mp monitors mp20-mp90 firmware2 CVEsintellivue mp monitors mp2\/x2 firmware2 CVEsintellivue mp monitors mp5\/5sc firmware2 CVEsintellivue mp monitors mx800\/700\/600 firmware2 CVEsdtr3502bfta dvb-t2 firmware2 CVEsintellivue mx402 CVEsdtr3502bfta dvb-t22 CVEsintellivue mx40 firmware2 CVEs8652422 CVEs8652412 CVEsdosewise2 CVEsintellivue mx6002 CVEsintellivue mx600 firmware2 CVEsintellivue mx7502 CVEsintellivue mx750 firmware2 CVEsintellivue mx8502 CVEsintellivue mx850 firmware2 CVEsalice 6 firmware2 CVEsalice 62 CVEsm3002a2 CVEsm80010a2 CVEsm8001a2 CVEsm8002a2 CVEsm8003a2 CVEsm8004a2 CVEsm8005a2 CVEsm8007a2 CVEsm8008a2 CVEsm8102a2 CVEsm8105a2 CVEsm8105as2 CVEs8652402 CVEspagewriter tc102 CVEspagewriter tc10 firmware2 CVEspagewriter tc202 CVEspagewriter tc20 firmware2 CVEspagewriter tc302 CVEspagewriter tc30 firmware2 CVEspagewriter tc502 CVEspagewriter tc50 firmware2 CVEspagewriter tc702 CVEspagewriter tc70 firmware2 CVEse-alert2 CVEsepiq 7 firmware1 CVEshdi 40001 CVEshdi 4000 firmware1 CVEshealthsuite health1 CVEshue1 CVEshue bridge bsb0021 CVEshue bridge bsb002 firmware1 CVEsencoreanywhere1 CVEsefficia cm firmware1 CVEsxperius firmware1 CVEstaolight smart wi-fi wiz connected led bulb 92900226561 CVEstaolight smart wi-fi wiz connected led bulb 9290022656 firmware1 CVEsxper information management physiomonitoring 51 CVEsxper information management vascular monitoring 51 CVEstasy webportal1 CVEsveradius unity1 CVEshue firmware1 CVEsxperconnect1 CVEsaffiniti 70 firmware1 CVEssmartcontrol1 CVEsdynamic coronary roadmap1 CVEssparq1 CVEssparq firmware1 CVEsaffiniti 501 CVEsdreammapper1 CVEsstentboost live1 CVEsveradius unity firmware1 CVEsviewforum1 CVEsintellibridge enterprise1 CVEsefficia cm1 CVEsintellispace pacs1 CVEscx50 firmware1 CVEsintellispace perinatal1 CVEsxperius1 CVEscx501 CVEscoronary tools1 CVEsaffiniti 701 CVEsaffiniti 50 firmware1 CVEsclearvue 850 firmware1 CVEsclearvue 8501 CVEspulsera1 CVEspulsera firmware1 CVEszymed holter 20101 CVEsxper flex cardio1 CVEsclearvue 350 firmware1 CVEsclearvue 3501 CVEssmart control premium1 CVEsendura1 CVEsinteroperability solution xds1 CVEsinterventional workspot1 CVEsisite pacs1 CVEsendura firmware1 CVEsengage1 CVEsepiq 71 CVEs

Recent Vulnerabilities

View all 115
CVE-2026-3562HIGH 8.8

Philips Hue Bridge hk_hap Ed25519 Signature Verification Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Philips Hue Bridge. Authentication is not required to exploit this vulnerability. The specific flaw exists within the ed25519_sign_open function. The issue results from improper verification of a cryptographic signature. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-28480.

CVE-2026-3561

Philips Hue Bridge hk_hap characteristics Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Philips Hue Bridge. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the handling of PUT requests to the characteristics endpoint. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the device. Was ZDI-CAN-28479.

CVE-2026-3560

Philips Hue Bridge HomeKit hk_hap_pair_storage_put Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Philips Hue Bridge. Authentication is not required to exploit this vulnerability. The specific flaw exists within the hk_hap_pair_storage_put function of the HomeKit implementation, which listens on TCP port 8080 by default. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the device. Was ZDI-CAN-28469.

CVE-2026-3559

Philips Hue Bridge HomeKit Accessory Protocol Static Nonce Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of Philips Hue Bridge. Authentication is not required to exploit this vulnerability. The specific flaw exists within the configuration of the SRP authentication mechanism in the HomeKit Accessory Protocol service, which listens on TCP port 8080 by default. The issue results from the use of a static nonce value. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-28451.

CVE-2026-3558

Philips Hue Bridge HomeKit Accessory Protocol Transient Pairing Mode Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of Philips Hue Bridge. Authentication is not required to exploit this vulnerability. The specific flaw exists within the configuration of the HomeKit Accessory Protocol service, which listens on TCP port 8080 by default. The issue results from the lack of authentication prior to allowing access to functionality. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-28374.

CVE-2026-3557

Philips Hue Bridge hap_pair_verify_handler Sub-TLV Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Philips Hue Bridge. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the hap_pair_verify_handler function of the hk_hap service, which listens on TCP port 8080 by default. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-28337.

CVE-2026-3556

Philips Hue Bridge HomeKit Pair-Setup Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Philips Hue Bridge. Authentication is not required to exploit this vulnerability. The specific flaw exists within the hk_hap_pair_storage_put function. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the HomeKit service. Was ZDI-CAN-28326.

CVE-2026-3555

Philips Hue Bridge Zigbee Stack Custom Command Handler Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Philips Hue Bridge. User interaction is required to exploit this vulnerability in that the user must initiate the device pairing process. The specific flaw exists within the handling of custom Zigbee ZCL frames in the Model Info download functionality. The issue results from the lack of proper validation of the size of data prior to copying it to a fixed-size heap buffer. An attacker can leverage this vulnerability to execute code in the context of the device. Was ZDI-CAN-28276.

CVE-2025-27955MEDIUM 6.5

Clinical Collaboration Platform 12.2.1.5 has a weak logout system where the session token remains valid after logout and allows a remote attacker to obtain sensitive information and execute arbitrary code.

CVE-2025-27954MEDIUM 6.5

An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the usertoken function of default.aspx.

CVE-2025-27953MEDIUM 6.5

An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the session management component.

CVE-2023-40704MEDIUM 6.8

The product does not require unique and complex passwords to be created during installation. Using Philips's default password could jeopardize the PACS system if the password was hacked or leaked. An attacker could gain access to the database impacting system availability and data integrity.

CVE-2018-8863MEDIUM 5.9

The HTTP header in Philips EncoreAnywhere contains data an attacker may be able to use to gain sensitive information.

CVE-2021-39369MEDIUM 6.5

In Philips (formerly Carestream) Vue MyVue PACS through 12.2.x.x, the VideoStream function allows Path Traversal by authenticated users to access files stored outside of the web root.

CVE-2021-32966LOW 3.7

Philips Interoperability Solution XDS versions 2.5 through 3.11 and 2018-1 through 2021-1 are vulnerable to clear text transmission of sensitive information when configured to use LDAP via TLS and where the domain controller returns LDAP referrals, which may allow an attacker to remotely read LDAP system credentials.

CVE-2022-0922MEDIUM 6.5

The software does not perform any authentication for critical system functionality.

CVE-2021-33024LOW 3.7

Philips Vue PACS versions 12.2.x.x and prior transmits or stores authentication credentials, but it uses an insecure method susceptible to unauthorized interception and/or retrieval.

CVE-2021-33022HIGH 7.5

Philips Vue PACS versions 12.2.x.x and prior transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

CVE-2021-33020HIGH 8.2

Philips Vue PACS versions 12.2.x.x and prior uses a cryptographic key or password past its expiration date, which diminishes its safety significantly by increasing the timing window for cracking attacks against that key.

CVE-2021-33018HIGH 7.5

The use of a broken or risky cryptographic algorithm in Philips Vue PACS versions 12.2.x.x and prior is an unnecessary risk that may result in the exposure of sensitive information.

CVE-2021-27501HIGH 7.5

Philips Vue PACS versions 12.2.x.x and prior does not follow certain coding rules for development, which can lead to resultant weaknesses or increase the severity of the associated vulnerabilities.

CVE-2021-27497MEDIUM 6.5

Philips Vue PACS versions 12.2.x.x and prior does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.

CVE-2021-27493MEDIUM 6.1

Philips Vue PACS versions 12.2.x.x and prior does not ensure or incorrectly ensures structured messages or data are well formed and that certain security properties are met before being read from an upstream component or sent to a downstream component.

CVE-2021-23173LOW 2.6

The affected product is vulnerable to an improper access control, which may allow an authenticated user to gain unauthorized access to sensitive data.

CVE-2021-43552MEDIUM 6.1

The use of a hard-coded cryptographic key significantly increases the possibility encrypted data may be recovered from the Patient Information Center iX (PIC iX) Versions B.02, C.02, and C.03.