PT-2018-16973 · Philips · Philips Intellispace Portal

Published

2018-03-26

·

Updated

2019-10-09

·

CVE-2018-5462

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Philips IntelliSpace Portal versions 7.0.x through 8.0.x
Description The issue allows an attacker to gain unauthorized access to resources and information due to an SSL incorrect hostname certificate vulnerability.
Recommendations For Philips IntelliSpace Portal versions 7.0.x through 8.0.x, update the SSL certificate configuration to ensure correct hostname verification to prevent unauthorized access.

Fix

Improper Certificate Validation

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-5462

Affected Products

Philips Intellispace Portal