CVE-2023-40704: Philips Vue Pacs

Critical severity, CVSS 9.8. EPSS: 0.3% chance of exploitation in the next 30 days.

The product does not require unique and complex passwords to be created during installation. Using Philips's default password could jeopardize the PACS system if the password was hacked or leaked. An attacker could gain access to the database impacting system availability and data integrity.

Affected products

  • Philips Vue Pacs: before 12.2.8.410 (fixed in 12.2.8.410)

Published 2024-07-18. Last modified 2026-06-17.