← Back to home
ICSMA-17-318-01  ·  Published 2017-11-14  ·  View on CISA ICS-CERT ↗

Philips IntelliSpace Cardiovascular System and Xcelera System Vulnerability

CVSS 7.2 HIGH

Risk Summary

Philips reported a vulnerability in the Philips ' IntelliSpace Cardiovascular and Xcelera cardiac image and information management systems. Philips has produced updates that mitigate this vulnerability in the affected products.

CVEs (1)

Remediations

  • Philips is producing software hotfix updates for all IntelliSpace Cardiovascular and latest Xcelera versions, some of which are available upon request, while other versions are in the process of development and are expected to be completed by the end of 2017.
  • Philips has initiated a voluntary medical device correction aligned with IntelliSpace Cardiovascular proactive field change order (reference FCO83000202) to be issued as IntelliSpace Cardiovascular updates become available.
  • Users with questions regarding their specific IntelliSpace Cardiovascular or Xcelera installations are advised by Philips to contact their local Philips service support team or their regional service support. Philips ' contact information is available at the following location:
  • http://www.usa.philips.com/healthcare/solutions/customer-service-solutions
  • Please see the Philips product security web site for the latest security information for Philips products:
  • https://www.philips.com/productsecurity

Affected Vendors

Philips

Affected Products (2)

Philips · IntelliSpace Cardiovascular <= 2.3.0
Philips · Xcelera <= R4.1L1

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more