CVE-2025-3424: 3.2.1 Arbitrary File Read in insecure .NET Remoting TCP Channel
The IntelliSpace portal application utilizes .NET Remoting for its functionality. The vulnerability arises from the exploitation of port 755 through the "Object Marshalling" technique, which allows an attacker to read internal files without any authentication. This is possible by crafting specific .NET Remoting URLs derived from information enumerated in the client-side configuration files.
This issue affects IntelliSpace Portal: 12 and prior.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-3424?
CVE-2025-3424 is considered a high severity vulnerability due to its capability to allow unauthorized access to internal files.
How do I fix CVE-2025-3424?
To fix CVE-2025-3424, it is recommended to update the IntelliSpace Portal to a version beyond 12 that addresses this vulnerability.
What systems are affected by CVE-2025-3424?
CVE-2025-3424 affects the Philips IntelliSpace Portal application versions up to 12.
What exploitation technique is used in CVE-2025-3424?
CVE-2025-3424 is exploited through the Object Marshalling technique on port 755.
What type of information can be accessed due to CVE-2025-3424?
Due to CVE-2025-3424, an attacker can read internal files of the IntelliSpace Portal application without authentication.