First published: Mon Mar 26 2018(Updated: )
Philips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have a self-signed SSL certificate vulnerability this could allow an attacker to gain unauthorized access to resources and information.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Philips IntelliSpace Portal | =8.0 | |
Philips IntelliSpace Portal | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-5466 is considered high due to the potential for unauthorized access to sensitive information.
To fix CVE-2018-5466, replace the self-signed SSL certificate with a certificate issued by a trusted Certificate Authority.
CVE-2018-5466 affects all versions of Philips IntelliSpace Portal 7.0.x and 8.0.x.
CVE-2018-5466 is a self-signed SSL certificate vulnerability that can be exploited to gain unauthorized access.
A specific patch for CVE-2018-5466 is not mentioned, but replacing the SSL certificate is a necessary mitigation step.