Philips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have an unquoted search path or element vulnerability that has been identified, which may allow an authorized local user to execute arbitrary code and escalate their level of privileges.
References
Link | Resource |
---|---|
https://www.usa.philips.com/healthcare/about/customer-support/product-security | Vendor Advisory |
https://ics-cert.us-cert.gov/advisories/ICSMA-18-058-02 | Third Party Advisory US Government Resource |
http://www.securityfocus.com/bid/103182 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2018-03-26 14:29
Updated : 2019-10-09 23:41
NVD link : CVE-2018-5470
Mitre link : CVE-2018-5470
JSON object : View
Products Affected
philips
- intellispace_portal
CWE
CWE-426
Untrusted Search Path