Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. The product receives input or data, but it does not validate or incorrectly validates that the input has the properties required to process the data safely and correctly.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-6642 Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. The product receives input or data, but it does not validate or incorrectly validates that the input has the properties required to process the data safely and correctly.
Fixes

Solution

Philips released the Clinical Collaboration Platform patch 12.2.1.5 in June 2020 for web portals to remediate CVE-2020-14506. Philips Clinical Collaboration Platform Version 12.2.5 was released in May 2020 to remediate CVE-2020-14506. Users with questions regarding their specific Philips Clinical Collaboration Platform installations and new release eligibility should contact Philips service support, or regional service support https://www.usa.philips.com/healthcare/solutions/customer-service-solutions , or call 1-877-328-2808, option 4. The Philips advisory and the latest security information for Philips products are available at the Philips product security website https://www.philips.com/productsecurity .


Workaround

No workaround given by the vendor.

History

Wed, 04 Jun 2025 20:15:00 +0000

Type Values Removed Values Added
Title Philips Clinical Collaboration Platform Cross-site Request Forgery
References
Metrics cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N'}

cvssV3_1

{'score': 3.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-06-04T20:03:25.989Z

Reserved: 2020-06-19T00:00:00

Link: CVE-2020-14506

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-09-18T18:15:16.583

Modified: 2025-06-04T20:15:21.540

Link: CVE-2020-14506

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.