CVE-2020-16222
Last modified
CVE-2020-16222 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. In Patient Information Center iX (PICiX) Version B.02, C.02, C.03, and PerformanceBridge Focal Point Version A.01, when an actor claims to have a given identity, the software does not prove or insufficiently proves the claim is correct.. EPSS estimates a 0.55% chance of exploitation in the next 30 days.
Description
In Patient Information Center iX (PICiX) Version B.02, C.02, C.03, and PerformanceBridge Focal Point Version A.01, when an actor claims to have a given identity, the software does not prove or insufficiently proves the claim is correct.
Metrics
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Philips | Patient Information Center Ix | b.02 |
| Philips | Patient Information Center Ix | c.02 |
| Philips | Patient Information Center Ix | c.03 |
| Philips | Performancebridge Focal Point | a.01 |
References
- https://us-cert.cisa.gov/ics/advisories/icsma-20-254-01Third Party Advisory, US Government Resource
- https://us-cert.cisa.gov/ics/advisories/icsma-20-254-01Third Party Advisory, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-16222?
How severe is CVE-2020-16222?
How do I fix CVE-2020-16222?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2020
- CVE-2020-16217Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prio…7.8
- CVE-2020-16218In Patient Information Center iX (PICiX) Versions B.02, C.02…3.5
- CVE-2020-16219Delta Electronics TPEditor Versions 1.97 and prior. An out-o…7.8
- CVE-2020-1622A local, authenticated user with shell can obtain the hashed…5.5
- CVE-2020-16220In Patient Information Center iX (PICiX) Versions C.02, C.03…4.3
- CVE-2020-16221Delta Electronics TPEditor Versions 1.97 and prior. A stack-…7.8
- CVE-2020-16223Delta Electronics TPEditor Versions 1.97 and prior. A heap-b…7.8
- CVE-2020-16224In Patient Information Center iX (PICiX) Versions C.02, C.03…6.5
- CVE-2020-16225Delta Electronics TPEditor Versions 1.97 and prior. A write-…7.8
- CVE-2020-16226Multiple Mitsubishi Electric products are vulnerable to impe…9.8
- CVE-2020-16227Delta Electronics TPEditor Versions 1.97 and prior. An impro…7.8
- CVE-2020-16228In Patient Information Center iX (PICiX) Versions C.02 and C…6.4
Are you affected by CVE-2020-16222?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
