HIGH · 7.2

CVE-2019-13534

Philips IntelliVue WLAN, portable patient monitors, WLAN Version A, Firmware A.03.09, WLAN Version A, Firmware A.03.09, Part #: M8096-67501, WLAN Version B, Firmware A.01.09, Part #: N/A (Replaced by ...

Vulnerability Description

Philips IntelliVue WLAN, portable patient monitors, WLAN Version A, Firmware A.03.09, WLAN Version A, Firmware A.03.09, Part #: M8096-67501, WLAN Version B, Firmware A.01.09, Part #: N/A (Replaced by Version C) and WLAN Version B, Firmware A.01.09, Part #: N/A (Replaced by Version C). The product downloads source code or an executable from a remote location and executes the code without sufficiently verifying the origin and integrity of the code.

CVSS Score

7.2

HIGH

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
HIGH
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
PhilipsIntellivue Mp Monitors Mp20-Mp90 Firmwarea.03.09
PhilipsM80010Aa
PhilipsM8001Aa
PhilipsM8002Aa
PhilipsM8003Aa
PhilipsM8004Aa
PhilipsM8005Aa
PhilipsM8007Aa
PhilipsM8008Aa
PhilipsIntellivue Mp Monitors Mp5\/5Sc Firmwarea.03.09
PhilipsM8105Aa
PhilipsM8105Asa
PhilipsIntellivue Mp Monitors Mp2\/X2 Firmwarea01.09
PhilipsM3002Ab
PhilipsM8102Ab
PhilipsIntellivue Mp Monitors Mx800\/700\/600 Firmwarea.01.09
Philips865240b
Philips865241b
Philips865242b

Related Weaknesses (CWE)

References

FAQ

What is CVE-2019-13534?

CVE-2019-13534 is a vulnerability with a CVSS score of 7.2 (HIGH). Philips IntelliVue WLAN, portable patient monitors, WLAN Version A, Firmware A.03.09, WLAN Version A, Firmware A.03.09, Part #: M8096-67501, WLAN Version B, Firmware A.01.09, Part #: N/A (Replaced by ...

How severe is CVE-2019-13534?

CVE-2019-13534 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2019-13534?

Check the references section above for vendor advisories and patch information. Affected products include: Philips Intellivue Mp Monitors Mp20-Mp90 Firmware, Philips M80010A, Philips M8001A, Philips M8002A, Philips M8003A.