Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The software transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors. The Philips e-Alert communication channel is not encrypted which could therefore lead to disclosure of personal contact information and application login credentials from within the same subnet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-20450 | Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The software transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors. The Philips e-Alert communication channel is not encrypted which could therefore lead to disclosure of personal contact information and application login credentials from within the same subnet. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-09-16T17:18:41.660Z
Reserved: 2018-03-20T00:00:00.000Z
Link: CVE-2018-8842
No data.
Status : Modified
Published: 2018-09-26T19:29:00.690
Modified: 2024-11-21T04:14:25.930
Link: CVE-2018-8842
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD