Description
Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. The product receives input or data, but it does not validate or incorrectly validates that the input has the properties required to process the data safely and correctly.
Published: 2020-09-18
Score: 3.4 Low
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Philips released the Clinical Collaboration Platform patch 12.2.1.5 in June 2020 for web portals to remediate CVE-2020-14506. Philips Clinical Collaboration Platform Version 12.2.5 was released in May 2020 to remediate CVE-2020-14506. Users with questions regarding their specific Philips Clinical Collaboration Platform installations and new release eligibility should contact Philips service support, or regional service support https://www.usa.philips.com/healthcare/solutions/customer-service-solutions , or call 1-877-328-2808, option 4. The Philips advisory and the latest security information for Philips products are available at the Philips product security website https://www.philips.com/productsecurity .

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2020-6642 Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. The product receives input or data, but it does not validate or incorrectly validates that the input has the properties required to process the data safely and correctly.
History

Wed, 04 Jun 2025 20:15:00 +0000

Type Values Removed Values Added
Title Philips Clinical Collaboration Platform Cross-site Request Forgery
References
Metrics cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N'}

cvssV3_1

{'score': 3.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N'}


Subscriptions

Philips Clinical Collaboration Platform
cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-06-04T20:03:25.989Z

Reserved: 2020-06-19T00:00:00.000Z

Link: CVE-2020-14506

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-09-18T18:15:16.583

Modified: 2025-06-04T20:15:21.540

Link: CVE-2020-14506

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses