CVE-2018-8848: High severity philips e-alert firmware vulnerability
Published Sep 26, 2018
·Updated
Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The software, upon installation, sets incorrect permissions for an object that exposes it to an unintended actor.
Affected Software
1 affected component
Philips E-alert Firmware<=r2.1
Event History
Sep 26, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2018-8848.
2
What is the severity of CVE-2018-8848?
The severity of CVE-2018-8848 is high with a severity value of 7.5.
3
What is the affected software for CVE-2018-8848?
The affected software for CVE-2018-8848 is Philips e-Alert Unit (non-medical device) version R2.1 and prior.
4
What are the consequences of CVE-2018-8848?
CVE-2018-8848 may allow an unintended actor to gain unauthorized access to the e-Alert Unit, posing a security risk.
5
How can I fix CVE-2018-8848?
To fix CVE-2018-8848, it is recommended to update to a version higher than R2.1 and ensure correct permissions are set during installation.