Philips Intellispace Portal Multiple Security Vulnerabilities
BID:103182
CVE-2018-5454 | CVE-2018-5458 | CVE-2018-5462 | CVE-2018-5464 | CVE-2018-5466 | CVE-2018-5468 | CVE-2018-5470 | CVE-2018-5472 | CVE-2018-5474 |Info
Philips Intellispace Portal Multiple Security Vulnerabilities
| Bugtraq ID: | 103182 |
| Class: | Design Error |
| CVE: |
CVE-2018-5474 CVE-2018-5472 CVE-2018-5468 CVE-2018-5470 CVE-2018-5454 CVE-2018-5458 CVE-2018-5462 CVE-2018-5464 CVE-2018-5466 |
| Remote: | Yes |
| Local: | Yes |
| Published: | Feb 27 2018 12:00AM |
| Updated: | Feb 27 2018 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Philips IntelliSpace Portal 8.0 Philips IntelliSpace Portal 7.0 |
| Not Vulnerable: | |
Discussion
Philips Intellispace Portal Multiple Security Vulnerabilities
Philips Intellispace Portal is prone to the following security vulnerabilities.
1. A remote code-execution vulnerability
2. Multiple privilege-escalation vulnerabilities
3. A cryptographic security vulnerability
Attackers can exploit these issues to execute arbitrary code within the context of affected device, cause a denial-of-service condition, bypass certain security restrictions, obtain sensitive information or gain unauthorized access to the device and perform unauthorized actions. This may lead to complete compromise of the device.
Intellispace Portal versions 8.0.x and 7.0.x are vulnerable.
Philips Intellispace Portal is prone to the following security vulnerabilities.
1. A remote code-execution vulnerability
2. Multiple privilege-escalation vulnerabilities
3. A cryptographic security vulnerability
Attackers can exploit these issues to execute arbitrary code within the context of affected device, cause a denial-of-service condition, bypass certain security restrictions, obtain sensitive information or gain unauthorized access to the device and perform unauthorized actions. This may lead to complete compromise of the device.
Intellispace Portal versions 8.0.x and 7.0.x are vulnerable.