Philips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have an unquoted search path or element vulnerability that has been identified, which may allow an authorized local user to execute arbitrary code and escalate their level of privileges.
References
Link | Resource |
---|---|
https://www.usa.philips.com/healthcare/about/customer-support/product-security | Vendor Advisory |
https://ics-cert.us-cert.gov/advisories/ICSMA-18-058-02 | Third Party Advisory US Government Resource |
http://www.securityfocus.com/bid/103182 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-03-26 07:29
Updated : 2019-10-09 16:41
NVD link : CVE-2018-5470
Mitre link : CVE-2018-5470
JSON object : View
CWE
CWE-426
Untrusted Search Path
Products Affected
philips
- intellispace_portal