CVE-2013-2808: Buffer Overflow
Heap-based buffer overflow in Xper in Philips Xper Information Management Physiomonitoring 5 components, Xper Information Management Vascular Monitoring 5 components, and Xper Information Management servers and workstations for Flex Cardio products before XperConnect 1.5.4.053 SP2 allows remote attackers to execute arbitrary code via a crafted HTTP request to the Connect broker on TCP port 6000.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-2808?
CVE-2013-2808 is classified with a critical severity due to its potential for remote code execution.
How do I fix CVE-2013-2808?
To fix CVE-2013-2808, update the affected Philips Xper software to the latest version that addresses this vulnerability.
What systems are affected by CVE-2013-2808?
CVE-2013-2808 affects Philips Xper Information Management Physiomonitoring 5, Vascular Monitoring 5, and related Flex Cardio products.
Can CVE-2013-2808 be exploited remotely?
Yes, CVE-2013-2808 can be exploited remotely, which makes it particularly dangerous in unpatched environments.
What are the consequences of exploiting CVE-2013-2808?
Exploiting CVE-2013-2808 can allow attackers to execute arbitrary code and potentially gain control of the affected systems.