ICSMA-18-058-02
·
Published 2018-02-27
·
View on CISA ICS-CERT ↗
Philips Intellispace Portal ISP Vulnerabilities
CVSS 9.8
CRITICAL
CISA KEV — Known Exploited
Risk Summary
Successful exploitation of these vulnerabilities could allow an attacker to gain unauthorized access to sensitive information, perform man-in-the-middle attacks, create denial of service conditions, or execute arbitrary code.
CVEs (35)
CVE-2018-5474
CVE-2017-0143
CVE-2017-0144
CVE-2017-0145
CVE-2017-0146
CVE-2017-0148
CVE-2017-0272
CVE-2017-0277
CVE-2017-0278
CVE-2017-0279
CVE-2017-0269
CVE-2017-0273
CVE-2017-0280
CVE-2017-0147
CVE-2017-0267
CVE-2017-0268
CVE-2017-0270
CVE-2017-0271
CVE-2017-0274
CVE-2017-0275
CVE-2017-0276
CVE-2018-5472
CVE-2018-5468
CVE-2017-0199
CVE-2005-1794
CVE-2018-5470
CVE-2018-5454
CVE-2018-5458
CVE-2018-5462
CVE-2018-5464
CVE-2018-5466
CVE-2011-3389
CVE-2004-2761
CVE-2014-3566
CVE-2016-2183
Remediations
- Philips' evaluation of Operating System security patches is ongoing, and after appropriate testing, the patches and mitigating controls are posted on Philips' InCenter. ISP users are recommended to obtain available mitigating controls by accessing their InCenter account at this location: http://incenter.medical.philips.com
- Users with questions regarding their specific ISP installations are advised by Philips to contact their local Philips service support team or their regional service support.
- Philips' contact information is available at the following location: https://www.usa.philips.com/healthcare/solutions/customer-service-solutions
- Please see the Philips product security website for the latest security information for Philips products: https://www.philips.com/productsecurity
Affected Vendors
Phillips
Affected Products (2)
Phillips
·
IntelliSpace Portal 8.0.x
vers:all/*
Phillips
·
IntelliSpace Portal 7.0.x
vers:all/*
Affected Sectors
Healthcare and Public Health
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more