RSS   Vulnerabilities for 'Cimplicity'   RSS

2020-04-15
 
CVE-2020-6992

CWE-269
 

 
A local privilege escalation vulnerability has been identified in the GE Digital CIMPLICITY HMI/SCADA product v10.0 and prior. If exploited, this vulnerability could allow an adversary to modify the system, leading to the arbitrary execution of code. This vulnerability is only exploitable if an attacker has access to an authenticated session. GE Digital CIMPLICITY v11.0, released January 2020, contains mitigation for this local privilege escalation vulnerability. GE Digital recommends all users upgrade to GE CIMPLICITY v11.0 or newer.

 
2018-12-07
 
CVE-2018-15362

CWE-611
 

 
XXE in GE Proficy Cimplicity GDS versions 9.0 R2, 9.5, 10.0

 

 >>> Vendor: GE 79 Products
Intelligent platforms proficy historian
Intelligent platforms proficy plant applications
Intelligent platforms proficy real-time information porta
Intelligent platforms proficy hmi%2Fscada ifix
Intelligent platforms proficy batch execution
Intelligent platforms si7 i%2Fo driver
Intelligent platforms proficy pulse
Intelligent platforms proficy hmi/scada ifix
Intelligent platforms si7 i/o driver
Intelligent platforms proficy real-time information portal
Intelligent platforms proficy hmi/scada cimplicity
Intelligent platforms proficy process systems with cimplicity
Intelligent platforms proficy process systems
Intelligent platforms proficy dnp3 i/o driver
Intelligent platforms proficy hmi%2fscada cimplicity
Multilink ml1200
Multilink ml1600
Multilink ml2400
Multilink ml3000
Multilink ml3100
Multilink ml800
Multilink ml810
Multilink ml1200 firmware
Multilink ml1600 firmware
Multilink ml2400 firmware
Multilink ml3000 firmware
Multilink ml3100 firmware
Multilink ml800 firmware
Multilink ml810 firmware
12400 level transmitter device type manager
Svi ii ap positioner device type manager
Vector device type manager
Hydran m2
Healtcare millennium mg firmware
Healtcare millennium myosight firmware
Healtcare millennium nc firmware
Healthcare millennium mg firmware
Healthcare millennium myosight firmware
Healthcare millennium nc firmware
Mds pulsenet
Ups snmp web adapter firmware
Snmp web adapter firmware
Multilink firmware
Bently nevada 3500/22m serial firmware
Bently nevada 3500/22m usb firmware
Multilin sr 489 generator protection relay firmware
Multilin urplus c90 firmware
Multilin urplus d90 firmware
Multilin sr 745 transformer protection relay firmware
Multilin sr 760 feeder protection relay firmware
Multilin universal relay firmware
Multilin sr 369 motor protection relay firmware
Multilin urplus b95 firmware
Multilin sr 750 feeder protection relay firmware
Multilin sr 469 motor protection relay firmware
D60 line distance relay firmware
Gemnet license server
Xeleris
Infinia hawkeye 4 firmware
Centricity pacs ra1000
Pacsystems cpu320 firmware
Pacsystems cru320 firmware
Pacsystems rsti-ep cpe 100 firmware
Pacsystems rx3i cpe305 firmware
Pacsystems rx3i cpe310 firmware
Pacsystems rxi firmware
Rx3i cpe330 firmware
Rx3i cpe 400 firmware
Snmp/web adapter firmware
Communicator
Cimplicity
Ge communicator
Aespire 7100 firmware
Aespire 7900 firmware
Aestiva 7100 firmware
Aestiva 7900 firmware
IFIX
Mark vie controll system
Mark vie control system


Copyright 2020, cxsecurity.com

 

Back to Top