Medium severity6.5NVD Advisory· Published Dec 26, 2022· Updated Jun 17, 2026
CVE-2021-39369
CVE-2021-39369
Description
In Philips (formerly Carestream) Vue MyVue PACS through 12.2.x.x, the VideoStream function allows Path Traversal by authenticated users to access files stored outside of the web root.
Affected products
6- Philips/Vue MyVue PACSdescription
Patches
Vulnerability mechanics
References
3- www.cisa.gov/uscert/ics/advisories/icsma-21-187-01nvdMitigationThird Party AdvisoryUS Government Resource
- www.usa.philips.com/healthcarenvdVendor Advisory
- www.youtube.com/watchnvdProduct
News mentions
0No linked articles in our index yet.