News | Cybersecurity | April 16, 2018

Company says it has not received any reports of patient harm from vulnerabilities, but is offering remediation options for its customers

Philips Warns of Cybersecurity Vulnerabilities in IntelliSpace and iSite PACS Products

April 16, 2018 — Philips Healthcare last week issued a proactive advisory warning to its iSite and IntelliSpace picture archiving and communication system (PACS) customers of potential security vulnerabilities in the products. The company cautioned that while it has received no reports of patient harm, the vulnerabilities in question could impact or potentially compromise patient confidentiality, system integrity and/or system availability.

Philips identified the cybersecurity vulnerabilities, predominantly in third-party components, that if fully exploited may allow low-skill attackers remote entry to the applications. Once inside, any attackers could potentially:

  • Provide unexpected input into the applications;
  • Execute arbitrary code;
  • Alter the intended control flow of the system;
  • Access sensitive information; or
  • Potentially cause a system crash.

The company said its own analysis does not suggest the vulnerabilities would impact clinical use. This is largely due to the fact that IntelliSpace PACS is operated in a managed service environment that adheres to the latest recommendations of the U.S. Department of Homeland Security’s Industrial Control Systems Cyber Emergency Response Team (ICS-CERT). The company also noted that it uses an automated antivirus solution and offers a monthly recurring patch program for IntelliSpace customers.

ICS-CERT released its own advisory that describes the vulnerabilities in further detail. Read the full ICS-CERT advisory here.

Philips is offering customers three potential pathways to address the security vulnerabilities:

  1. Enrolling in the recurring patch program, which Philips said will remediate 86 percent of all known vulnerabilities;
  2. Option 1 plus updating system firmware, which will remediate 87 percent of all known vulnerabilities, including all known critical vulnerabilities;
  3. Option 2 plus upgrading to IntelliSpace PACS 4.4.5x with Windows operating system 2012, which addresses product hardening. Philips said this option will remediate 99.9 percent of all the known vulnerabilities, including all critical vulnerabilities.

Remediation options are provided at no charge for Philips customers on full service delivery model contracts.

For more information: www.usa.philips.com/healthcare

 


Related Content

Feature | Information Technology | Dhruv Chopra

Radiology is a cornerstone of modern medical diagnostics, but today it stands at an inflection point. Pressures ...

Time February 24, 2026
arrow
News | Enterprise Imaging

Feb. 12, 2026 — Agfa HealthCare continued its strong business momentum across the U.S. market, as health systems expand ...

Time February 20, 2026
arrow
News | Digital Pathology

Feb. 11, 2026 — Leica Biosystems has announced the global launch of the Leica CM1950 Cryostat with DualEcoTec Cooling ...

Time February 11, 2026
arrow
News | HIMSS

Feb. 4, 2026 —The HIMSS Global Health Conference & Exhibition has announced that acclaimed actor and philanthropist ...

Time February 09, 2026
arrow
Feature | Cybersecurity | Kyle Hardner

As radiology practices shift toward cloud-based platforms and integrate AI-powered tools, will practices become more ...

Time January 14, 2026
arrow
News | Image Guided Radiation Therapy (IGRT)

Nov. 30, 2025 — At RSNA 2025, Siemens Healthineers is presenting its new imaging chain Optiq AI1, which is powered by ...

Time December 01, 2025
arrow
News | RSNA 2025

Nov. 27, 2025— AdvaHealth Solutions is highlighting AdvaPACS, its cloud-native and AI-forward imaging platform at RSNA ...

Time November 29, 2025
arrow
News | Archive Cloud Storage

Nov.18t, 2025 — Gradient Health recently announced its Atlas platform is now available on Google Cloud Marketplace ...

Time November 18, 2025
arrow
News | Radiology Imaging

Nov. 13, 2025 — Medical imaging AI company Avicenna.AI has launched AVI, a new platform that delivers AI results ...

Time November 13, 2025
arrow
News | Radiology Business

Nov. 12, 2025 — Siemens has announced plans to deconsolidate its remaining stake in Siemens Healthineers (currently ...

Time November 13, 2025
arrow
Subscribe Now