ZeroHour

CVE-2020-14477

CVSS 3.1
4.4 medium
EPSS
<1%p21
Published
()
Modified
Description

In Philips Ultrasound ClearVue Versions 3.2 and prior, Ultrasound CX Versions 5.0.2 and prior, Ultrasound EPIQ/Affiniti Versions VM5.0 and prior, Ultrasound Sparq Version 3.0.2 and prior and Ultrasound Xperius all versions, an attacker may use an alternate path or channel that does not require authentication of the alternate service login to view or modify information.

Vendors
philips
Products
clearvue 850 firmware, clearvue 350 firmware, cx50 firmware, affiniti 70 firmware, affiniti 50 firmware, epiq 7 firmware, sparq firmware, xperius firmware
Weakness
CWE-288, CWE-287
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.