[2026-04-24]
:: medical-devices · PACS
SQL injection in Philips IntelliSpace PACSSQL injection in the query interface allows authenticated users to read arbitrary database content.
Serving the healthcare infosec community since MMXXV | HIPAA · HITECH · FDA · OCR · Zero Trust · Medical Device Security
SQL injection in the query interface allows authenticated users to read arbitrary database content.
DICOM tags travel with imaging studies across networks, storage tiers, and viewers. Almost none of them are validated.