CVE Vulnerabilities

CVE-2018-5454

Active Debug Code

Published: Mar 26, 2018 | Modified: Nov 21, 2024
CVSS 3.x
8.1
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Philips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have a vulnerability where code debugging methods are enabled, which could allow an attacker to remotely execute arbitrary code during runtime.

Weakness

The product is released with debugging code still enabled or active.

Affected Software

NameVendorStart VersionEnd Version
Intellispace_portalPhilips8.0 (including)8.0 (including)
Intellispace_portalPhilips9.0 (including)9.0 (including)

Potential Mitigations

References