Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The software does not properly restrict the size or amount of resources requested or influenced by an actor, which can be used to consume more resources than intended.
CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HPhilips E Alert Firmware
OSPhilips≤ r2.1
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Related vulnerabilities
CVE-2018-8856CRITICAL9.8PL ✓same product
Philips E-Alert: zakodowany na stałe klucz kryptograficzny (CWE-798)
CVE-2018-8850CRITICAL9.8PL ✓same product
Nieprawidłowa walidacja danych wejściowych umożliwia RCE w Philips E-Alert
CVE-2018-8852HIGH8.8same product
Philips e-Alert Unit (non-medical device), Version R2.1 and prior. When authenticating a user or otherwise est...
CVE-2018-8842HIGH8.8same product
Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The software transmits sensitive or securit...
CVE-2018-8844HIGH8.8same product
Philips e-Alert Unit (non-medical device), Version R2.1 and prior. The web application does not, or cannot, su...