Philips Gemini PET/CT Family
Philips Gemini PET/CT systems contain a vulnerability involving removable media that could allow access to sensitive patient health information. The vulnerability stems from the anonymize function not reliably removing all patient data from exported or removable media. An attacker with physical access to the scanner or its removable media could extract confidential patient information despite the anonymization process. Philips has not released a firmware update to address this issue for any model in the Gemini family.
- Physical access to the Gemini PET/CT scanner
- Physical access to removable media used by the scanner
- Ability to connect external devices or remove storage media from the scanner
Patching may require device reboot — plan for process interruption
/api/v1/advisories/992deb54-a456-4f6e-b995-b079eb5a23c4Get OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.