Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2019-13534


Philips IntelliVue WLAN, portable patient monitors, WLAN Version A, Firmware A.03.09, WLAN Version A, Firmware A.03.09, Part #: M8096-67501, WLAN Version B, Firmware A.01.09, Part #: N/A (Replaced by Version C) and WLAN Version B, Firmware A.01.09, Part #: N/A (Replaced by Version C). The product downloads source code or an executable from a remote location and executes the code without sufficiently verifying the origin and integrity of the code.


Published

2019-09-12T20:15:11.727

Last Modified

2024-11-21T04:25:05.720

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.2 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:S/C:P/I:P/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: SINGLE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

8.0

Impact Score

6.4

Weaknesses
  • Type: Secondary
    CWE-494
  • Type: Primary
    CWE-494

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System philips intellivue_mp_monitors_mp20-mp90_firmware a.03.09 Yes
Hardware philips m80010a a No
Hardware philips m8001a a No
Hardware philips m8002a a No
Hardware philips m8003a a No
Hardware philips m8004a a No
Hardware philips m8005a a No
Hardware philips m8007a a No
Hardware philips m8008a a No
Operating System philips intellivue_mp_monitors_mp5\/5sc_firmware a.03.09 Yes
Hardware philips m8105a a No
Hardware philips m8105as a No
Operating System philips intellivue_mp_monitors_mp2\/x2_firmware a01.09 Yes
Hardware philips m3002a b No
Hardware philips m8102a b No
Operating System philips intellivue_mp_monitors_mx800\/700\/600_firmware a.01.09 Yes
Hardware philips 865240 b No
Hardware philips 865241 b No
Hardware philips 865242 b No

References