peter bassill · operator
$ cve CVE-2018-5474 JSON

CVE-2018-5474

9.8
CRITICAL · CVSS 3.0 · EPSS 6.1% (pctl 93)

In your normal cycle

Critical by CVSS (9.8), but no sign of active exploitation.

Description

Philips Intellispace Portal all versions 7.0.x and 8.0.x have an input validation vulnerability that could allow a remote attacker to execute arbitrary code or cause the application to crash.

Scoring

CVSS9.8 (CRITICAL, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS6.05% — more likely to be exploited than 93% of all CVEs
WeaknessCWE-20
On CISA KEVno
Public exploitnone known
Published2018-03-26
Last modified2026-06-17

Affected (1)

VendorProduct
philipsintellispace portal

References

→ the Explorer  ·  watch your stack  ·  NVD