CVE-2018-14801

CVE-2018-14801

Vendor Philips
Product PageWriter TC10, TC20, TC30, TC50, TC70 Cardiographs
Weakness CWE-798 · Hardcoded credentials
Published August 22, 2018
Last update September 17, 2024

CVSS base score

What the vulnerability does

01Description

In Philips PageWriter TC10, TC20, TC30, TC50, TC70 Cardiographs, all versions prior to May 2018, an attacker with both the superuser password and physical access can enter the superuser password that can be used to access and modify all settings on the device, as well as allow the user to reset existing passwords.

Key dates

02Disclosure timeline

August 22, 2018 CVE published
September 17, 2024 Record updated