CVE-2020-16220

MEDIUM

PICiX C.02-C.03, PerformanceBridge Focal Point A.01 - Info Disclosure

Title source: llm
STIX 2.1

Description

In Patient Information Center iX (PICiX) Versions C.02, C.03, PerformanceBridge Focal Point Version A.01, the product receives input that is expected to be well-formed (i.e., to comply with a certain syntax) but it does not validate or incorrectly validates that the input complies with the syntax, causing the certificate enrollment service to crash. It does not impact monitoring but prevents new devices from enrolling.

Scores

CVSS v3 4.3
EPSS 0.0003
EPSS Percentile 10.1%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Details

CWE
CWE-1286
Status published
Products (4)
philips/patient_information_center_ix b.02
philips/patient_information_center_ix c.02
philips/patient_information_center_ix c.03
philips/performancebridge_focal_point a.01
Published Sep 11, 2020
Tracked Since Feb 18, 2026