Back

HIGH

Philips EncoreAnywhere Exposure of Sensitive Information to an Unauthorized Actor

Published Nov 9, 2023

Description

The HTTP header in Philips EncoreAnywhere contains data an attacker may be able to use to gain sensitive information.

Affected products

Remediation

Vendor solution

Philips has identified and put in place mitigations to reduce the risk of exploitation of this vulnerability. They continue to assess additional mitigations and a full implementation and documentation will be available by September 2018.

Metrics

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner icscert
Published Nov 9, 2023
Updated Sep 3, 2024
Reserved Mar 20, 2018
CISA Vulnrichment
Updated Sep 3, 2024
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a