First published: Fri Sep 18 2020(Updated: )
Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. When an attacker claims to have a given identity, the software does not prove or insufficiently proves the claim is correct.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Philips Clinical Collaboration Platform | <=12.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2020-16198.
The affected software is Philips Clinical Collaboration Platform versions 12.2.1 and prior.
The severity of CVE-2020-16198 is medium with a CVSS score of 6.3.
The vulnerability allows an attacker to claim a given identity without sufficient proof, potentially leading to unauthorized access.
At the moment, there is no information available regarding a fix for this vulnerability. It is recommended to follow the recommendations provided by the software vendor.