Exposure of resource to wrong sphere in IntelliSpace Perinatal - CVE-2019-13546

 

Exposure of resource to wrong sphere in IntelliSpace Perinatal - CVE-2019-13546

Published: October 25, 2019


Vulnerability identifier: #VU22282
CSH Severity: Low
CVSS v4.0: CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2019-13546
CWE-ID:
Exploitation vector: Local access
Exploit availability: No public exploit available
Vendor: Philips
Affected software:
IntelliSpace Perinatal

Detailed vulnerability description

The vulnerability allows a local attacker to gain access to system resources.

The vulnerability exists due to the error that allows to bypass a lock screen of the Windows operating system when the software is running. An attacker with physical access to the system can bypass the Windows lock screen and gain unauthorized access to the computer.

How to mitigate CVE-2019-13546

Cybersecurity Help is currently unaware of any official solution to address this vulnerability.

Sources