← Back

Intellispace Cardiovascular

intellispace_cardiovascular

Vendor: Philips • 4 CVEs

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Philips
2Intellispace Cardiovascular
Xcelera
Nov 21, 2024
Aug 22, 2018
N/A· v4
6.7 MEDIUM· v3
4.6 MEDIUM· v2
In Philips' IntelliSpace Cardiovascular (ISCV) products (ISCV Version 3.1 or prior and Xcelera Version 4.1 or prior), an unquoted search path or element vulnerability has been identified, which may allow an attacker to e...Show more
In Philips' IntelliSpace Cardiovascular (ISCV) products (ISCV Version 3.1 or prior and Xcelera Version 4.1 or prior), an unquoted search path or element vulnerability has been identified, which may allow an attacker to execute arbitrary code and escalate their level of privileges.Show less
1Philips
2Intellispace Cardiovascular
Xcelera
Nov 21, 2024
Aug 22, 2018
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
In Philips' IntelliSpace Cardiovascular (ISCV) products (ISCV Version 2.x or prior and Xcelera Version 4.1 or prior), an attacker with escalated privileges could access folders which contain executables where authenticat...Show more
In Philips' IntelliSpace Cardiovascular (ISCV) products (ISCV Version 2.x or prior and Xcelera Version 4.1 or prior), an attacker with escalated privileges could access folders which contain executables where authenticated users have write permissions, and could then execute arbitrary code with local administrative permissions.Show less
1Philips
1Intellispace Cardiovascular
Jun 17, 2026
Mar 20, 2018
N/A· v4
6.3 MEDIUM· v3
3.3 LOW· v2
Philips ISCV application prior to version 2.3.0 has an insufficient session expiration vulnerability where an attacker could reuse the session of a previously logged in user. This vulnerability exists when using ISCV tog...Show more
Philips ISCV application prior to version 2.3.0 has an insufficient session expiration vulnerability where an attacker could reuse the session of a previously logged in user. This vulnerability exists when using ISCV together with an Electronic Medical Record (EMR) system, where ISCV is in KIOSK mode for multiple users and using Windows authentication. This may allow an attacker to gain unauthorized access to patient health information and potentially modify this information.Show less
1Philips
2Intellispace Cardiovascular
Xcelera
May 13, 2026
Nov 17, 2017
N/A· v4
7.2 HIGH· v3
4.0 MEDIUM· v2
The workstation logging function in Philips IntelliSpace Cardiovascular (ISCV) 2.3.0 and earlier and Xcelera R4.1L1 and earlier records domain authentication credentials, which if accessed allows an attacker to use crede...Show more
The workstation logging function in Philips IntelliSpace Cardiovascular (ISCV) 2.3.0 and earlier and Xcelera R4.1L1 and earlier records domain authentication credentials, which if accessed allows an attacker to use credentials to access the application, or other user entitlements.Show less