Vulnerability Details CVE-2018-14787
In Philips' IntelliSpace Cardiovascular (ISCV) products (ISCV Version 2.x or prior and Xcelera Version 4.1 or prior), an attacker with escalated privileges could access folders which contain executables where authenticated users have write permissions, and could then execute arbitrary code with local administrative permissions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.3%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 4.6
Products affected by CVE-2018-14787
-
cpe:2.3:a:philips:intellispace_cardiovascular:-
-
cpe:2.3:a:philips:intellispace_cardiovascular:2.3.0
-
cpe:2.3:a:philips:intellispace_cardiovascular:3.1
-
cpe:2.3:a:philips:xcelera:4.1