CVE-2020-16216
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
11/09/2020
Last modified:
12/12/2023
Description
In IntelliVue patient monitors MX100, MX400-550, MX600, MX700, MX750, <br />
MX800, MX850, MP2-MP90, and IntelliVue X2 and X3 Versions N and prior, <br />
the product receives input or data but does not validate or incorrectly <br />
validates that the input has the properties required to process the data<br />
safely and correctly, which can induce a denial-of-service condition <br />
through a system restart.<br />
<br />
<br />
<br />
Impact
Base Score 3.x
6.50
Severity 3.x
MEDIUM
Base Score 2.0
6.10
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:philips:patient_information_center_ix:b.02:*:*:*:*:*:*:* | ||
cpe:2.3:a:philips:patient_information_center_ix:c.02:*:*:*:*:*:*:* | ||
cpe:2.3:a:philips:patient_information_center_ix:c.03:*:*:*:*:*:*:* | ||
cpe:2.3:a:philips:performancebridge_focal_point:a.01:*:*:*:*:*:*:* | ||
cpe:2.3:o:philips:intellivue_mp2-mp90_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:philips:intellivue_mp2-mp90:n:*:*:*:*:*:*:* | ||
cpe:2.3:o:philips:intellivue_mx100_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:philips:intellivue_mx100:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:philips:intellivue_mx400_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:philips:intellivue_mx400:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:philips:intellivue_mx850_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:philips:intellivue_mx850:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:philips:intellivue_x2_firmware:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:philips:intellivue_x2:n:*:*:*:*:*:*:* | ||
cpe:2.3:o:philips:intellivue_x3_firmware:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page