Back to search
CVE-2020-16218
Published: Sep 11, 2020
Modified: Aug 4, 2024
PUBLISHED
Description
In Patient Information Center iX (PICiX) Versions B.02, C.02, C.03, the software does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is then used as a webpage and served to other users. Successful exploitation could lead to unauthorized access to patient data via a read-only web application.
| Vendor | Product | Versions |
|---|---|---|
Philips | Patient Information Center iX (PICiX) | affected B.02affected C.02affected C.03 |
Weaknesses (CWE)
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now