|
209241
|
4.3 |
MEDIUM
Network
|
gallagher
|
command_centre
|
In Gallagher Command Centre v8.20 prior to v8.20.1093(MR2) it is possible to create Guard Tour events that when accessed via things like reporting cause clients to temporarily hang or disconnect.
|
NVD-CWE-noinfo
|
CVE-2020-16099
|
2024-11-21 14:06 |
2020-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209242
|
9.8 |
CRITICAL
Network
|
gallagher
|
command_centre
|
It is possible to enumerate access card credentials via an unauthenticated network connection to the server in versions of Command Centre v8.20 prior to v8.20.1166(MR3), versions of 8.10 prior to v8.…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2020-16098
|
2024-11-21 14:06 |
2020-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209243
|
4.6 |
MEDIUM
Physics
|
gallagher
|
command_centre
|
On controllers running versions of v8.20 prior to vCR8.20.200221b (distributed in v8.20.1093(MR2)), v8.10 prior to vGR8.10.179 (distributed in v8.10.1211(MR5)), v8.00 prior to vGR8.00.165 (Distribute…
|
NVD-CWE-noinfo
|
CVE-2020-16097
|
2024-11-21 14:06 |
2020-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209244
|
7.7 |
HIGH
Network
|
gallagher
|
command_centre
|
In Gallagher Command Centre versions 8.10 prior to 8.10.1134(MR4), 8.00 prior to 8.00.1161(MR5), 7.90 prior to 7.90.991(MR5), 7.80 prior to 7.80.960(MR2), 7.70 and earlier, any operator account has a…
|
NVD-CWE-noinfo
|
CVE-2020-16096
|
2024-11-21 14:06 |
2020-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209245
|
6.5 |
MEDIUM
Adjacent
|
philips
|
patient_information_center_ix
|
In Patient Information Center iX (PICiX) Versions C.02, C.03, the
software parses a formatted message or structure but does not handle or
incorrectly handles a length field that is inconsistent wit…
|
-
|
CVE-2020-16224
|
2024-11-21 14:06 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209246
|
4.3 |
MEDIUM
Adjacent
|
philips
|
performancebridge_focal_point patient_information_center_ix
|
In Patient Information Center iX (PICiX) Versions C.02, C.03,
PerformanceBridge Focal Point Version A.01, the product receives input
that is expected to be well-formed (i.e., to comply with a certa…
|
-
|
CVE-2020-16220
|
2024-11-21 14:06 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209247
|
6.8 |
MEDIUM
Physics
|
philips
|
patient_information_center_ix
|
In Patient Information Center iX (PICiX) Versions B.02, C.02, C.03, the product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource. …
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2020-16212
|
2024-11-21 14:06 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209248
|
8.8 |
HIGH
Adjacent
|
philips
|
performancebridge_focal_point patient_information_center_ix
|
In Patient Information Center iX (PICiX) Version B.02, C.02, C.03, and
PerformanceBridge Focal Point Version A.01, when an actor claims to have
a given identity, the software does not prove or insu…
|
-
|
CVE-2020-16222
|
2024-11-21 14:06 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209249
|
3.5 |
LOW
Adjacent
|
philips
|
patient_information_center_ix
|
In Patient Information Center iX (PICiX) Versions B.02, C.02, C.03, the
software does not neutralize or incorrectly neutralizes
user-controllable input before it is placed in output that is then us…
|
-
|
CVE-2020-16218
|
2024-11-21 14:06 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209250
|
5.0 |
MEDIUM
Local
|
philips
|
patient_information_center_ix
|
In Patient Information Center iX (PICiX) Versions B.02, C.02, C.03, the
software saves user-provided information into a comma-separated value
(CSV) file, but it does not neutralize or incorrectly n…
|
-
|
CVE-2020-16214
|
2024-11-21 14:06 |
2020-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|