← Vulnerability feed

Vulnerability record · CVE-2018-5454 · published 26 March 2018

CVE-2018-5454: Philips intellispace portal vulnerability

Philips · Intellispace Portal

Philips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have a vulnerability where code debugging methods are enabled, which could allow an attacker to remotely execute arbitrary code during runtime.

8.1 CVSS 3.0 High EPSS 3.4% · top 11.5% CWE-489 · CWE-489
8.1CVSS 3.0 base score, v2 6.8
3.4%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
6References
17 Jun 2026Last modified by NVD

Description

Philips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have a vulnerability where code debugging methods are enabled, which could allow an attacker to remotely execute arbitrary code during runtime.

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2018-5454 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2017-0143Microsoft Windows SMBv1 Server Remote Code ExecutionThe SMBv1 server in multiple Microsoft Windows versions fails to properly handle crafted packets, allowing remote code execution. This is one of the …KEVEPSS 93%analysed7.8CVE-2017-0199Microsoft Office and WordPad remote code execution via crafted documentCVE-2017-0199 is a remote code execution flaw in Microsoft Office and WordPad that is triggered when a user opens a specially crafted document. The r…KEVEPSS 99%analysed9.8CVE-2018-5468Philips intellispace portal permissions and access controls vulnerabilityPhilips Intellispace Portal all versions 7.0.x and 8.0.x have a remote desktop access vulnerability that could allow an attacker to gain unauthorized…EPSS 4.5%9.8CVE-2018-5472Philips intellispace portal permissions and access controls vulnerabilityPhilips Intellispace Portal all versions 7.0.x and 8.0.x have an insecure windows permissions vulnerability that could allow an attacker to gain unau…EPSS 4.5%9.8CVE-2018-5474Philips intellispace portal improper input validation vulnerabilityPhilips Intellispace Portal all versions 7.0.x and 8.0.x have an input validation vulnerability that could allow a remote attacker to execute arbitra…EPSS 6.1%7.8CVE-2018-5470Philips intellispace portal unquoted search path vulnerabilityPhilips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have an unquoted search path or element vulnerability that has been identified, which ma…EPSS 0.55%7.5CVE-2018-5458Philips intellispace portal broken cryptographic algorithm vulnerabilityPhilips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have a vulnerability using SSL legacy encryption that could allow an attacker to gain un…EPSS 1.2%7.5CVE-2018-5462Philips intellispace portal improper certificate validation vulnerabilityPhilips IntelliSpace Portal all versions of 8.0.x, and 7.0.x have an SSL incorrect hostname certificate vulnerability this could allow an attacker to…EPSS 1.9%

Source: NIST National Vulnerability Database (record CVE-2018-5454), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.