Vulnerability index

Browse CVEs

32 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.3 CVE-2023-0898 General Electric MiCOM S1 Agile is vulnerable to an attacker achieving code execution by placing malicious DLL files in the directory of the applicat… Micom S1 Agile Mitigation only Fix from $1,9502023-11-07 HIGH 7.8 CVE-2023-4487 GE CIMPLICITY 2023 is by a process control vulnerability, which could allow a local attacker to insert malicious configuration files in the expected … Cimplicity Mitigation only Fix from $1,9502023-09-05 CRITICAL 9.8 CVE-2023-3463 All versions of GE Digital CIMPLICITY that are not adhering to SDG guidance and accepting documents from untrusted sources are vulnerable to memory c… Cimplicity Mitigation only Fix from $2,3002023-07-19 CRITICAL 9.8 CVE-2023-0598 GE Digital Proficy iFIX 2022, GE Digital Proficy iFIX v6.1, and GE Digital Proficy iFIX v6.5 are vulnerable to code injection, which may allow an att… Ifix Mitigation only Fix from $2,3002023-03-16 HIGH 7.8 CVE-2020-36549 A vulnerability classified as critical was found in GE Voluson S8. Affected is the underlying Windows XP operating system. Missing patches might intr… Voluson S8 Firmware Mitigation only Fix from $1,9502022-06-17 HIGH 7.8 CVE-2020-36547 A vulnerability was found in GE Voluson S8. It has been rated as critical. This issue affects the Service Browser which itroduces hard-coded credenti… Voluson S8 Firmware Mitigation only Fix from $1,9502022-06-17 HIGH 7.8 CVE-2020-36548 A vulnerability classified as problematic has been found in GE Voluson S8. Affected is the file /uscgi-bin/users.cgi of the Service Browser. The mani… Voluson S8 Firmware Mitigation only Fix from $1,9502022-06-17 MEDIUM 6.8 CVE-2021-27430 GE UR bootloader binary Version 7.00, 7.01 and 7.02 included unused hardcoded credentials. Additionally, a user with physical access to the UR IED ca… Ur Bootloader Binary Mitigation only Fix from $1,6002022-03-23 CRITICAL 9.8 CVE-2022-21798 The affected product is vulnerable due to cleartext transmission of credentials seen in the CIMPLICITY network, which can be easily spoofed and used … Cimplicity Mitigation only Fix from $2,3002022-02-25 HIGH 7.3 CVE-2021-31477 This vulnerability allows remote attackers to execute arbitrary code on affected installations of GE Reason RPV311 14A03. Authentication is not requi… Reason Rpv311 Firmware Mitigation only Fix from $1,9502021-06-16 HIGH 8.8 CVE-2019-13554 GE Mark VIe Controller has an unsecured Telnet protocol that may allow a user to create an authenticated session using generic default credentials. G… Mark Vie Control System Mitigation only Fix from $1,9502020-04-07 HIGH 7.8 CVE-2019-13559 GE Mark VIe Controller is shipped with pre-configured hard-coded credentials that may allow root-user access to the controller. A limited application… Mark Vie Controll System Mitigation only Fix from $1,9502020-04-07 MEDIUM 6.8 CVE-2020-6977 A restricted desktop environment escape vulnerability exists in the Kiosk Mode functionality of affected devices. Specially crafted inputs can allow … Vivid E95 Firmware Mitigation only Fix from $1,6002020-02-20 HIGH 7.5 CVE-2012-6663EPSS 9% General Electric D20ME devices are not properly configured and reveal plaintext passwords. D20me Firmware No fix yet Fix from $1,9502020-01-23 MEDIUM 5.3 CVE-2019-10966 In GE Aestiva and Aespire versions 7100 and 7900, a vulnerability exists where serial devices are connected via an added unsecured terminal server to… Aestiva 7100 Firmware Mitigation only Fix from $1,6002019-07-10 CRITICAL 9.1 CVE-2018-15362 XXE in GE Proficy Cimplicity GDS versions 9.0 R2, 9.5, 10.0 Cimplicity Mitigation only Fix from $2,3002018-12-07 CRITICAL 9.8 CVE-2017-14002 GE Infinia/Infinia with Hawkeye 4 medical imaging systems all current versions are affected these devices use default or hard-coded credentials. Succ… Infinia Hawkeye 4 Firmware Mitigation only Fix from $2,3002018-03-20 CRITICAL 9.8 CVE-2017-14004 GE GEMNet License server (EchoServer) all current versions are affected these devices use default or hard-coded credentials. Successful exploitation … Gemnet License Server Mitigation only Fix from $2,3002018-03-20 CRITICAL 9.8 CVE-2017-14006 GE Xeleris versions 1.0,1.1,2.1,3.0,3.1, medical imaging systems, all current versions are affected, these devices use default or hard-coded credenti… Xeleris Mitigation only Fix from $2,3002018-03-20 CRITICAL 9.8 CVE-2017-14008 GE Centricity PACS RA1000, diagnostic image analysis, all current versions are affected these devices use default or hard-coded credentials. Successf… Centricity Pacs Ra1000 Mitigation only Fix from $2,3002018-03-20 CRITICAL 10.0 CVE-2016-5788 General Electric (GE) Bently Nevada 3500/22M USB with firmware before 5.0 and Bently Nevada 3500/22M Serial have open ports, which makes it easier fo… Bently Nevada 3500\/22m Usb Firmware Mitigation only Fix from $2,3002016-11-25 MEDIUM 5.0 CVE-2014-5409 The 17046 Ethernet card before 94450214LFMT100SEM-L.R3-CL for the GE Digital Energy Hydran M2 does not properly generate random values for TCP Initia… Hydran M2 Mitigation only Fix from $1,6002015-03-14 MEDIUM 5.0 CVE-2014-9203 Buffer overflow in the Field Device Tool (FDT) Frame application in the HART Device Type Manager (DTM) library, as used in MACTek Bullet DTM 1.00.0, … 12400 Level Transmitter Device Type Manager Mitigation only Fix from $1,6002015-02-07 HIGH 9.3 CVE-2013-2785 Multiple buffer overflows in CimWebServer.exe in the WebView component in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY before 8.0 SIM 27, … Intelligent Platforms Proficy Hmi\/scada Cimplicity Mitigation only Fix from $1,9502013-07-31 HIGH 9.3 CVE-2013-0654 CimWebServer in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY 4.01 through 8.0, and Proficy Process Systems with CIMPLICITY, allows remote … Intelligent Platforms Proficy Hmi\/scada Cimplicity Mitigation only Fix from $1,9502013-01-27 MEDIUM 5.0 CVE-2013-0651 The Portal installation process in GE Intelligent Platforms Proficy Real-Time Information Portal stores sensitive information under the web root with… Intelligent Platforms Proficy Real Time Information Portal Mitigation only Fix from $1,6002013-01-27 MEDIUM 5.0 CVE-2013-0652 GE Intelligent Platforms Proficy Real-Time Information Portal does not restrict access to methods of an unspecified Java class, which allows remote a… Intelligent Platforms Proficy Real Time Information Portal Mitigation only Fix from $1,6002013-01-27 HIGH 10.0 CVE-2012-3010EPSS 5% rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attack… Intelligent Platforms Proficy Real Time Information Portal Mitigation only Fix from $1,9502012-11-01 HIGH 10.0 CVE-2012-3021EPSS 5% rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attack… Intelligent Platforms Proficy Real Time Information Portal Mitigation only Fix from $1,9502012-11-01 HIGH 10.0 CVE-2012-3026EPSS 5% rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attack… Intelligent Platforms Proficy Real Time Information Portal Mitigation only Fix from $1,9502012-11-01