← Back to home
ICSMA-21-308-01  ·  Published 2021-11-04  ·  View on CISA ICS-CERT ↗

Philips Tasy EMR

CVSS 8.8 HIGH

Risk Summary

Successful exploitation of these vulnerabilities could result in patient 's confidential data being exposed or extracted from Tasy 's database, give unauthorized access, or create a denial-of-service condition.

Remediations

  • Philips recommends users update Tasy EMR HTML5 to Version 3.06.1804 or later with the latest available service pack where both CVEs are remediated.
  • Users with questions regarding their specific Philips TASY EMR system are advised by Philips to contact their Customer Success Manager (CSM), local Philips service support team, or regional service support. Users can also contact Philips on itscompany website.
  • The Philips advisory for these vulnerabilities is available on Philips product security website.
  • Please see the Philips product security website for the latest security information for Philips products.

Affected Vendors

Philips

Affected Products (1)

Philips · Tasy EMR HTML5 <= 3.06.1803

Affected Sectors

Healthcare and Public Health

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more