CVE-2018-19001

MEDIUM

Philips HealthSuite Health Android App - Inadequate Encryption Strength

Title source: llm
STIX 2.1

Description

Philips HealthSuite Health Android App, all versions. The software uses simple encryption that is not strong enough for the level of protection required.

References (2)

Core 2
Core References
Mitigation, Third Party Advisory, US Government Resource x_refsource_misc
https://ics-cert.us-cert.gov/advisories/ICSMA-18-340-01
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/106126

Scores

CVSS v3 4.3
EPSS 0.0016
EPSS Percentile 5.4%
Attack Vector PHYSICAL
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Details

CWE
CWE-326
Status published
Products (1)
philips/healthsuite_health
Published Dec 07, 2018
Tracked Since Feb 18, 2026