CVE-2020-16228
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/09/2020
Last modified:
12/12/2023
Description
In Patient Information Center iX (PICiX) Versions C.02 and C.03, <br />
PerformanceBridge Focal Point Version A.01, IntelliVue patient monitors <br />
MX100, MX400-MX550, MX750, MX850, and IntelliVue X3 Versions N and <br />
prior, the software does not check or incorrectly checks the revocation <br />
status of a certificate, which may cause it to use a compromised <br />
certificate.<br />
<br />
<br />
<br />
Impact
Base Score 3.x
6.40
Severity 3.x
MEDIUM
Base Score 2.0
5.20
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:philips:patient_information_center_ix:b.02:*:*:*:*:*:*:* | ||
| cpe:2.3:a:philips:patient_information_center_ix:c.02:*:*:*:*:*:*:* | ||
| cpe:2.3:a:philips:patient_information_center_ix:c.03:*:*:*:*:*:*:* | ||
| cpe:2.3:a:philips:performancebridge_focal_point:a.01:*:*:*:*:*:*:* | ||
| cpe:2.3:o:philips:intellivue_mp2-mp90_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:philips:intellivue_mp2-mp90:n:*:*:*:*:*:*:* | ||
| cpe:2.3:o:philips:intellivue_mx100_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:philips:intellivue_mx100:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:philips:intellivue_mx400_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:philips:intellivue_mx400:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:philips:intellivue_mx850_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:philips:intellivue_mx850:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:philips:intellivue_x2_firmware:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:philips:intellivue_x2:n:*:*:*:*:*:*:* | ||
| cpe:2.3:o:philips:intellivue_x3_firmware:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



