3.6
CVSSv2

CVE-2020-14477

Published: 26/06/2020 Updated: 15/07/2020
CVSS v2 Base Score: 3.6 | Impact Score: 4.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 4.4 | Impact Score: 2.5 | Exploitability Score: 1.8
VMScore: 320
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

In Philips Ultrasound ClearVue Versions 3.2 and prior, Ultrasound CX Versions 5.0.2 and prior, Ultrasound EPIQ/Affiniti Versions VM5.0 and prior, Ultrasound Sparq Version 3.0.2 and prior and Ultrasound Xperius all versions, an attacker may use an alternate path or channel that does not require authentication of the alternate service login to view or modify information.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

philips clearvue_850_firmware

philips clearvue_350_firmware

philips cx50_firmware 5.0.2

philips affiniti_70_firmware

philips affiniti_50_firmware

philips epiq_7_firmware

philips sparq_firmware

philips xperius_firmware