First published: Thu Sep 12 2019(Updated: )
Philips IntelliVue WLAN, portable patient monitors, WLAN Version A, Firmware A.03.09, WLAN Version A, Firmware A.03.09, Part #: M8096-67501, WLAN Version B, Firmware A.01.09, Part #: N/A (Replaced by Version C) and WLAN Version B, Firmware A.01.09, Part #: N/A (Replaced by Version C). The product downloads source code or an executable from a remote location and executes the code without sufficiently verifying the origin and integrity of the code.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Philips Intellivue Mp Monitors Mp20-mp90 Firmware | =a.03.09 | |
Philips M80010a | =a | |
Philips M8001a | =a | |
Philips M8002a | =a | |
Philips M8003a | =a | |
Philips M8004a | =a | |
Philips M8005a | =a | |
Philips M8007a | =a | |
Philips M8008a | =a | |
Philips Intellivue Mp Monitors Mp5\/5sc Firmware | =a.03.09 | |
Philips M8105a | =a | |
Philips M8105as | =a | |
Philips Intellivue Mp Monitors Mp2\/x2 Firmware | =a01.09 | |
Philips M3002a | =b | |
Philips M8102a | =b | |
Philips Intellivue Mp Monitors Mx800\/700\/600 Firmware | =a.01.09 | |
Philips 865240 | =b | |
Philips 865241 | =b | |
Philips 865242 | =b |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-13534 has been assigned a Common Vulnerability Scoring System (CVSS) score indicating critical severity due to potential unauthorized access.
To fix CVE-2019-13534, update the Philips IntelliVue WLAN firmware to the latest version as recommended by Philips.
CVE-2019-13534 affects Philips IntelliVue patient monitors running WLAN Version A, Firmware A.03.09 and WLAN Version B, Firmware A.01.09.
Using the device with CVE-2019-13534 vulnerability is not recommended as it may expose it to unauthorized access.
Currently, there are no effective workarounds for CVE-2019-13534, and applying the firmware update is strongly advised.