{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-15T13:02:14.312","vulnerabilities":[{"cve":{"id":"CVE-2018-14789","sourceIdentifier":"ics-cert@hq.dhs.gov","published":"2018-08-22T18:29:00.433","lastModified":"2024-11-21T03:49:47.833","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In Philips' IntelliSpace Cardiovascular (ISCV) products (ISCV Version 3.1 or prior and Xcelera Version 4.1 or prior), an unquoted search path or element vulnerability has been identified, which may allow an attacker to execute arbitrary code and escalate their level of privileges."},{"lang":"es","value":"En los productos IntelliSpace Cardiovascular (ISCV) de Phillips (ISCV en versiones 2.x o anteriores y Xcelera en versiones 4.1 y anteriores), se ha identificado una vulnerabilidad de elemento o ruta de búsqueda sin entrecomillar en la que un atacante podría ejecutar código arbitrario y escalar su nivel de privilegios."}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1\/AV:L\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","baseScore":6.7,"baseSeverity":"MEDIUM","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"HIGH","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":0.8,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L\/AC:L\/Au:N\/C:P\/I:P\/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"ics-cert@hq.dhs.gov","type":"Secondary","description":[{"lang":"en","value":"CWE-428"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-428"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:philips:intellispace_cardiovascular:*:*:*:*:*:*:*:*","versionEndIncluding":"3.1","matchCriteriaId":"C11159E7-9244-49B2-933A-AAF995D4AAF6"},{"vulnerable":true,"criteria":"cpe:2.3:a:philips:xcelera:*:*:*:*:*:*:*:*","versionEndIncluding":"4.1","matchCriteriaId":"FEE47A78-BC37-427F-8B8B-81E0EB380C1C"}]}]}],"references":[{"url":"https:\/\/ics-cert.us-cert.gov\/advisories\/ICSMA-18-226-01","source":"ics-cert@hq.dhs.gov","tags":["Third Party Advisory","US Government Resource"]},{"url":"https:\/\/www.usa.philips.com\/healthcare\/about\/customer-support\/product-security","source":"ics-cert@hq.dhs.gov","tags":["Vendor Advisory"]},{"url":"https:\/\/ics-cert.us-cert.gov\/advisories\/ICSMA-18-226-01","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"https:\/\/www.usa.philips.com\/healthcare\/about\/customer-support\/product-security","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}}]}