Philips IntelliVue WLAN Vulnerabilities
Philips has released details of two vulnerabilities affecting their IntelliVue wireless local area network (WLAN) platform and the products that use this platform.
Summary
Philips has released details of two vulnerabilities affecting their IntelliVue wireless local area network (WLAN) platform and the products that use this platform.
Threat details
A remote authenticated user could exploit these vulnerabilities to alter system firmware. Both vulnerabilities are a result of the IntelliVue WLAN platform not properly verifying the content of firmware files or authenticating their origin. An attacker with knowledge of the target system could exploit these vulnerabilities to install their own malicious firmware over FTP.
For further information:
Remediation steps
CVE Vulnerabilities
Last edited: 14 February 2020 2:57 pm