ZeroHour

CVE-2019-18241

CVSS 3.1
6.5 medium
EPSS
<1%p26
Published
()
Modified
Description

In Philips IntelliBridge EC40 and EC80, IntelliBridge EC40 Hub all versions, and IntelliBridge EC80 Hub all versions, the SSH server running on the affected products is configured to allow weak ciphers. This could enable an unauthorized attacker with access to the network to capture and replay the session and gain unauthorized access to the EC40/80 hub.

Vendors
philips
Products
intellibridge ec40 firmware, intellibridge ec80 firmware
Weakness
CWE-326
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.