PT-2018-12723 · Philips · Intellispace Cardiovascular+1

Published

2018-08-22

·

Updated

2022-04-22

·

CVE-2018-14789

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IntelliSpace Cardiovascular versions 3.1 and earlier Xcelera versions 4.1 and earlier
Description An unquoted search path or element issue has been identified, which may allow an attacker to execute arbitrary code and escalate their level of privileges.
Recommendations For IntelliSpace Cardiovascular versions 3.1 and earlier, update to a version later than 3.1 to resolve the issue. For Xcelera versions 4.1 and earlier, update to a version later than 4.1 to resolve the issue. As a temporary workaround, consider restricting access to the vulnerable components until a patch is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-14789

Affected Products

Intellispace Cardiovascular
Xcelera