CVEs we hold for Philips
Records whose assigning authority named Philips as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-3562Philips Hue Bridge hk_hap Ed25519 Signature Verification Authentication Bypass VulnerabilityPhilips Hue Bridge
CVE-2026-3561Philips Hue Bridge hk_hap characteristics Heap-based Buffer Overflow Remote Code Execution VulnerabilityPhilips Hue Bridge
CVE-2026-3560Philips Hue Bridge HomeKit hk_hap_pair_storage_put Heap-based Buffer Overflow Remote Code Execution VulnerabilityPhilips Hue Bridge
CVE-2026-3559Philips Hue Bridge HomeKit Accessory Protocol Static Nonce Authentication Bypass VulnerabilityPhilips Hue Bridge
CVE-2026-3558Philips Hue Bridge HomeKit Accessory Protocol Transient Pairing Mode Authentication Bypass VulnerabilityPhilips Hue Bridge
CVE-2026-3557Philips Hue Bridge hap_pair_verify_handler Sub-TLV Parsing Heap-based Buffer Overflow Remote Code Execution…Philips Hue Bridge
CVE-2026-3556Philips Hue Bridge HomeKit Pair-Setup Heap-based Buffer Overflow Remote Code Execution VulnerabilityPhilips Hue Bridge
CVE-2026-3555Philips Hue Bridge Zigbee Stack Custom Command Handler Heap-based Buffer Overflow Remote Code Execution VulnerabilityPhilips Hue Bridge
CVE-2025-3425Unauthenticated Remote Code Execution via .NET DeserializationPhilips IntelliSpace Portal
CVE-2025-34243.2.1 Arbitrary File Read in insecure .NET Remoting TCP ChannelPhilips IntelliSpace Portal
CVE-2025-2230Philips Intellispace Cardiovascular (ISCV) Improper AuthenticationPhilips Intellispace Cardiovascular (ISCV)
CVE-2025-2229Philips Intellispace Cardiovascular (ISCV) Use of Weak CredentialsPhilips Intellispace Cardiovascular (ISCV)
CVE-2024-9991Cleartext Storage of Sensitive Information Vulnerability in Philips Lighting DevicesPhilips Smart T-Bulb 10,12-Watt
CVE-2021-43552Philips Patient Information Center iX (PIC iX) and Efficia CM Series Use of Hard-coded Cryptographic KeyPhilips Patient Information Center iX (PIC iX)
CVE-2021-43550Philips Patient Information Center iX (PIC iX) and Efficia CM Series Use of a Broken or Risky Cryptographic AlgorithmPhilips Patient Information Center iX (PIC iX)
CVE-2021-43548Philips Patient Information Center iX (PIC iX) and Efficia CM Series Improper Input ValidationPhilips Patient Information Center iX (PIC iX)
CVE-2021-33017Philips IntelliBridge EC 40 and EC 80 Hub Authentication Bypass Using an Alternate Path or ChannelPhilips IntelliBridge EC 80 Hub
CVE-2021-32993Philips IntelliBridge EC 40 and EC 80 Hub Use of Hard-coded CredentialsPhilips IntelliBridge EC 80 Hub
CVE-2021-32966Philips Interoperability Solution XDS - Clear Text Transmission of Sensitive InformationPhilips Interoperability Solution XDS
CVE-2021-27456Philips Gemini PET/CT Storage of Sensitive Data in a Mechanism Without Access ControlPhilips TruFlight Select PET/CT
CVE-2020-16247Philips Clinical Collaboration Platform ConfigurationPhilips Clinical Collaboration Platform
CVE-2020-16228Philips Patient Monitoring Devices Improper Check for Certificate RevocationPhilips IntelliVue X3
CVE-2020-16224Philips Patient Monitoring Devices Improper Handling of Length Parameter InconsistencyPhilips Patient Information Center iX (PICiX)
CVE-2020-16222Philips Patient Monitoring Devices Improper AuthenticationPhilips PerformanceBridge Focal Point
CVE-2020-16220Philips Patient Monitoring Devices Improper Validation of Syntactic Correctness of InputPhilips PerformanceBridge Focal Point
CVE-2020-16218Philips Patient Monitoring Devices Cross-site ScriptingPhilips Patient Information Center iX (PICiX)
CVE-2020-16214Philips Patient Monitoring Devices Improper Neutralization of Formula Elements in a CSV FilePhilips Patient Information Center iX (PICiX)
CVE-2020-16212Philips Patient Monitoring Devices Exposure of Resource to Wrong SpherePhilips Patient Information Center iX (PICiX)
CVE-2020-16200Philips Clinical Collaboration Platform Algorithm DowngradePhilips Clinical Collaboration Platform
CVE-2020-16198Philips Clinical Collaboration Platform Protection Mechanism FailurePhilips Clinical Collaboration Platform
CVE-2020-14525Philips Clinical Collaboration Platform Improper Neutralization of Script in Attributes in a Web PagePhilips Clinical Collaboration Platform
CVE-2020-14518Philips DreamMapper Insertion of Sensitive Information into Log FilePhilips DreamMapper
CVE-2020-14506Philips Clinical Collaboration Platform Cross-site Request ForgeryPhilips Clinical Collaboration Platform
CVE-2020-14477Philips Ultrasound Systems Authentication Bypass Using an Alternate Path or ChannelPhilips Ultrasound Xperius
CVE-2020-12023Philips IntelliBridge Enterprise IBE Insertion of Sensitive Information into Log FilePhilips IntelliBridge Enterprise (IBE)
CVE-2018-8863Philips EncoreAnywhere Exposure of Sensitive Information to an Unauthorized ActorPhilips EncoreAnywhere
100 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.