ICSMA-25-233-01
·
Published 2025-08-21
·
View on CISA ICS-CERT ↗
FUJIFILM Healthcare Americas Synapse Mobility
CVSS 4.3
MEDIUM
Risk Summary
Successful exploitation of this vulnerability could allow an attacker to access information beyond their assigned roles.
CVEs (1)
Remediations
- FUJIFILM Healthcare Americas has released the following mitigation options for users to follow:
- It is recommended to upgrade to the latest version of the product or any version from 8.2 and later to resolve this issue.
- There is an immediate mitigation available of disabling the search function in the configurator settings. Access to the search function for all users can also be removed by unchecking the "Allow plain text accession number" check box in the security section of the admin interface. This will limit the site to use of the product only via the SecureURL feature.
- Patches have been released which will remediate the vulnerability for software versions 8.0-8.1.1.
- FUJIFILM Healthcare Americas strongly encourages users to update the Synapse Mobility application to the latest version if they are past their end of support date.
- For more information, refer to Synapse Mobility Vulnerability Notification.
Affected Vendors
FUJIFILM Healthcare Americas Corporation
Affected Products (1)
FUJIFILM Healthcare Americas Corporation
·
Synapse Mobility
<8.2
Affected Sectors
Healthcare and Public Health
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more