#VU14587 Information disclosure in Philips e-Alert Unit - CVE-2018-8842
Published: August 31, 2018
Philips e-Alert Unit
Philips
Description
The disclosed vulnerability allows a remote attacker to obtain potentially sensitive information.
The vulnerability exists due to the software transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors. A remote attacker can disclose personal contact information and application login credentials from within the same subnet.