Multiple vulnerabilities in Philips IntelliBridge EC 40 and EC 80 Hub



Published: 2021-11-19
Risk Medium
Patch available NO
Number of vulnerabilities 2
CVE-ID CVE-2021-32993
CVE-2021-33017
CWE-ID CWE-798
CWE-288
Exploitation vector Local network
Public exploit N/A
Vulnerable software
Subscribe
IntelliBridge EC 40 Hub
Hardware solutions / Medical equipment

IntelliBridge EC 80 Hub
Hardware solutions / Medical equipment

Vendor Philips

Security Bulletin

This security bulletin contains information about 2 vulnerabilities.

1) Use of hard-coded credentials

EUVDB-ID: #VU58248

Risk: Medium

CVSSv3.1: 7.4 [CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H/E:U/RL:U/RC:C]

CVE-ID: CVE-2021-32993

CWE-ID: CWE-798 - Use of Hard-coded Credentials

Exploit availability: No

Description

The vulnerability allows a remote attacker to gain full access to vulnerable system.

The vulnerability exists due to presence of hard-coded credentials in application code. A remote unauthenticated attacker on the local network can access the affected system using the hard-coded credentials.

Mitigation

Cybersecurity Help is currently unaware of any official solution to address this vulnerability.

Vulnerable software versions

IntelliBridge EC 40 Hub: C.00.04

IntelliBridge EC 80 Hub: C.00.04

External links

http://ics-cert.us-cert.gov/advisories/icsma-21-322-01


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the local network (LAN).

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

2) Authentication bypass using an alternate path or channel

EUVDB-ID: #VU58249

Risk: Medium

CVSSv3.1: 7.4 [CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H/E:U/RL:U/RC:C]

CVE-ID: CVE-2021-33017

CWE-ID: CWE-288 - Authentication Bypass Using an Alternate Path or Channel

Exploit availability: No

Description

The vulnerability allows a remote attacker to bypass authentication process.

The vulnerability exists due to the affected product has an alternate path or channel that does not require authentication. A remote attacker on the local network can bypass authentication process and gain unauthorized access to the application.

Mitigation

Cybersecurity Help is currently unaware of any official solution to address this vulnerability.

Vulnerable software versions

IntelliBridge EC 40 Hub: C.00.04

IntelliBridge EC 80 Hub: C.00.04

External links

http://ics-cert.us-cert.gov/advisories/icsma-21-322-01


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the local network (LAN).

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.



###SIDEBAR###