Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-18263

Опубликовано: 20 дек. 2019
Источник: nvd
CVSS3: 6.5
CVSS2: 3.3
EPSS Низкий

Описание

An issue was found in Philips Veradius Unity, Pulsera, and Endura Dual WAN Router, Veradius Unity (718132) with wireless option (shipped between 2016-August 2018), Veradius Unity (718132) with ViewForum option (shipped between 2016-August 2018), Pulsera (718095) and Endura (718075) with wireless option (shipped between 26-June-2017 through 07-August 2018), Pulsera (718095) and Endura (718075) with ViewForum option (shipped between 26-June-2017 through 07-August 2018). The router software uses an encryption scheme that is not strong enough for the level of protection required.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:philips:veradius_unity_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:philips:veradius_unity:-:*:*:*:*:*:*:*
Конфигурация 2

Одновременно

cpe:2.3:o:philips:pulsera_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:philips:pulsera:-:*:*:*:*:*:*:*
Конфигурация 3

Одновременно

cpe:2.3:o:philips:endura_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:philips:endura:-:*:*:*:*:*:*:*

EPSS

Процентиль: 16%
0.00051
Низкий

6.5 Medium

CVSS3

3.3 Low

CVSS2

Дефекты

CWE-326
CWE-326

Связанные уязвимости

github
больше 3 лет назад

An issue was found in Philips Veradius Unity, Pulsera, and Endura Dual WAN Router, Veradius Unity (718132) with wireless option (shipped between 2016-August 2018), Veradius Unity (718132) with ViewForum option (shipped between 2016-August 2018), Pulsera (718095) and Endura (718075) with wireless option (shipped between 26-June-2017 through 07-August 2018), Pulsera (718095) and Endura (718075) with ViewForum option (shipped between 26-June-2017 through 07-August 2018). The router software uses an encryption scheme that is not strong enough for the level of protection required.

EPSS

Процентиль: 16%
0.00051
Низкий

6.5 Medium

CVSS3

3.3 Low

CVSS2

Дефекты

CWE-326
CWE-326