CVE-2018-5472 Vulnerability Details
/
/
/
CVE-2018-5472 Metadata Quick Info
CVE Published: 26/03/2018 |
CVE Updated: 17/09/2024 |
CVE Year: 2018
Source: icscert |
Vendor: Philips |
Product: Philips IntelliSpace Portal
Status : PUBLISHED
CVE-2018-5472 Description
Philips Intellispace Portal all versions 7.0.x and 8.0.x have an insecure windows permissions vulnerability that could allow an attacker to gain unauthorized access and in some cases escalate their level of privilege or execute arbitrary code.
Metrics
CVSS Version: 3.1 |
Base Score: n/a
Vector: n/a
l➤ Exploitability Metrics:
Attack Vector (AV)*
Attack Complexity (AC)*
Privileges Required (PR)*
User Interaction (UI)*
Scope (S)*
l➤ Impact Metrics:
Confidentiality Impact (C)*
Integrity Impact (I)*
Availability Impact (A)*
Weakness Enumeration (CWE)
CWE-ID: CWE-264
CWE Name: PERMISSIONS, PRIVILEGES, AND ACCESS CONTROLS CWE-264
Source: Philips
Common Attack Pattern Enumeration and Classification (CAPEC)
CAPEC-ID:
CAPEC Description:
Source: NVD (National Vulnerability Database).