#VU46829 Algorithm Downgrade in Clinical Collaboration Platform - CVE-2020-16200

 

#VU46829 Algorithm Downgrade in Clinical Collaboration Platform - CVE-2020-16200

Published: September 18, 2020 / Updated: September 21, 2020


Vulnerability identifier: #VU46829
Vulnerability risk: Low
CVSSv4.0: CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2020-16200
CWE-ID: CWE-757
Exploitation vector: Adjecent network
Exploit availability: No public exploit available
Vulnerable software:
Clinical Collaboration Platform
Software vendor:
Philips

Description

The vulnerability allows a remote attacker to bypass certain security restrictions.

The vulnerability exists due to the affected software does not properly control the allocation and maintenance of a limited resource. A remote attacker on the local network can influence the amount of resources consumed, eventually leading to the exhaustion of available resources.


Remediation

Cybersecurity Help is currently unaware of any official solution to address this vulnerability.

External links