CVE-2020-16198: Philips Clinical Collaboration Platform Protection Mechanism Failure
Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. When an attacker claims to have a given identity, the software does not prove or insufficiently proves the claim is correct.
Other sources
When an attacker claims to have a given identity,
Philips Clinical Collaboration Platform, Versions 12.2.1 and prior, does not prove or insufficiently proves the claim is correct.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-16198.
What is the affected software?
The affected software is Philips Clinical Collaboration Platform versions 12.2.1 and prior.
What is the severity of CVE-2020-16198?
The severity of CVE-2020-16198 is medium with a CVSS score of 6.3.
How does the vulnerability affect the software?
The vulnerability allows an attacker to claim a given identity without sufficient proof, potentially leading to unauthorized access.
Is there a fix available for this vulnerability?
At the moment, there is no information available regarding a fix for this vulnerability. It is recommended to follow the recommendations provided by the software vendor.