First published: Tue Feb 27 2018(Updated: )
Philips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have a vulnerability where code debugging methods are enabled, which could allow an attacker to remotely execute arbitrary code during runtime.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Philips IntelliSpace Portal | =8.0 | |
Philips IntelliSpace Portal | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-5454 has a critical severity due to the potential for remote code execution.
To fix CVE-2018-5454, update Philips IntelliSpace Portal to the latest version provided by Philips.
CVE-2018-5454 affects all versions of Philips IntelliSpace Portal 8.0.x and 7.0.x.
Yes, CVE-2018-5454 allows attackers to remotely execute arbitrary code due to enabled debugging methods.
The primary risk of CVE-2018-5454 is the potential for an attacker to gain unauthorized access and execute malicious code.