PT-2018-12723 · Philips · Intellispace Cardiovascular+1
Published
2018-08-22
·
Updated
2022-04-22
·
CVE-2018-14789
CVSS v3.1
6.7
Medium
| Vector | AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
IntelliSpace Cardiovascular versions 3.1 and earlier
Xcelera versions 4.1 and earlier
Description
An unquoted search path or element issue has been identified, which may allow an attacker to execute arbitrary code and escalate their level of privileges.
Recommendations
For IntelliSpace Cardiovascular versions 3.1 and earlier, update to a version later than 3.1 to resolve the issue.
For Xcelera versions 4.1 and earlier, update to a version later than 4.1 to resolve the issue.
As a temporary workaround, consider restricting access to the vulnerable components until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Intellispace Cardiovascular
Xcelera