Clinical Collaboration Platform
Vendor:
First CVE: Sep 18, 2020 · Active for 5 years
8
Total CVEs
More Total CVEs than 87% of tracked products
4.0
Avg CVEs / Year
Higher CVE frequency than 85% of tracked products
5.9
Avg CVSS
Higher Avg CVSS than 22% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Clinical Collaboration Platform over time
Volume of CVEsAvg CVSS Base Score
First CVE
Sep 18, 2020
5 years ago
Most Recent CVE
Jun 2, 2025
421 days ago
CVE Severity & Scoring
Clinical Collaboration Platform8 CVEs
13%
75%
13%
All CVEs353,240 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local1 (12.5%)
Network4 (50.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network3 (37.5%)
Attack Complexity
Low8 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None7 (87.5%)
Unknown0 (0.0%)
Required1 (12.5%)
Privileges Required
Low2 (25.0%)
High0 (0.0%)
None6 (75.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (8 CVEs).
8 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-16247HIGH Philips Clinical Collaboration Platform, Versions 12.2.1 and prior,
exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the | Sep 18, 2020 | 7.1 | 22 | NO | NO |
CVE-2020-16200MEDIUM Philips Clinical Collaboration Platform, Versions 12.2.1 and prior,
does not properly control the allocation and maintenance of a limited
resource, thereby enabling an attacker | Sep 18, 2020 | 6.5 | 21 | NO | NO |
CVE-2025-27954MEDIUM An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the usertoken function of default.aspx. | Jun 2, 2025 | 6.5 | 20 | NO | NO |
CVE-2020-16198MEDIUM When an attacker claims to have a given identity,
Philips Clinical Collaboration Platform, Versions 12.2.1 and prior,
does not prove or insufficiently proves the claim is correc | Sep 18, 2020 | 6.3 | 20 | NO | NO |
CVE-2025-27955MEDIUM Clinical Collaboration Platform 12.2.1.5 has a weak logout system where the session token remains valid after logout and allows a remote attacker to obtain sensitive information an | Jun 2, 2025 | 6.5 | 18 | NO | NO |
CVE-2025-27953MEDIUM An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the session management component. | Jun 2, 2025 | 6.5 | 18 | NO | NO |
CVE-2020-14506MEDIUM Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. The product receives input or data, but it does not validate or incorrectly validates that the input has the pro | Sep 18, 2020 | 4.3 | 14 | NO | NO |
Philips Clinical Collaboration Platform, Versions 12.2.1 and prior, does not neutralize or incorrectly neutralizes user-controllable input
before it is placed in output used as a | Sep 18, 2020 | 3.5 | 13 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (8 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (8 CVEs).
Media Mentions
Signals from CVEs in this product scope (8 CVEs).
Top CNAs Publishing CVEs For Clinical Collaboration Platform
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 12.2.1.5 | 3 | 6.5 | 0.3% | 0 | 0 |