Exposure of resource to wrong sphere in IntelliSpace Perinatal - CVE-2019-13546
Published: October 25, 2019
Vulnerability identifier: #VU22282
CSH Severity: Low
CVSS v4.0: CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2019-13546
CWE-ID:
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vendor: Philips
Affected software:
IntelliSpace Perinatal
IntelliSpace Perinatal
Detailed vulnerability description
The vulnerability allows a local attacker to gain access to system resources.
The vulnerability exists due to the error that allows to bypass a lock screen of the Windows operating system when the software is running. An attacker with physical access to the system can bypass the Windows lock screen and gain unauthorized access to the computer.
How to mitigate CVE-2019-13546
Cybersecurity Help is currently unaware of any official solution to address this vulnerability.