CVE-2018-5466: High severity Philips IntelliSpace Portal vulnerability
Published Mar 26, 2018
·Updated
Philips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have a self-signed SSL certificate vulnerability this could allow an attacker to gain unauthorized access to resources and information.
Affected Software
2 affected components
Philips IntelliSpace Portal=8.0
Philips IntelliSpace Portal=9.0
Event History
Mar 26, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Data Sourced
via NVD·02:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-5466?
The severity of CVE-2018-5466 is considered high due to the potential for unauthorized access to sensitive information.
2
How do I fix CVE-2018-5466?
To fix CVE-2018-5466, replace the self-signed SSL certificate with a certificate issued by a trusted Certificate Authority.
3
Which versions of Philips IntelliSpace Portal are affected by CVE-2018-5466?
CVE-2018-5466 affects all versions of Philips IntelliSpace Portal 7.0.x and 8.0.x.
4
What type of vulnerability is CVE-2018-5466?
CVE-2018-5466 is a self-signed SSL certificate vulnerability that can be exploited to gain unauthorized access.
5
Is there a patch available for CVE-2018-5466?
A specific patch for CVE-2018-5466 is not mentioned, but replacing the SSL certificate is a necessary mitigation step.