VendorsGEintelligent_platforms_proficy_process_systems_with_cimplicityall versions
Vulnerabilities

GE neral Electric Intelligent Platforms Proficy Process Systems with CIMPLICITY

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2013-2785
Multiple buffer overflows in CimWebServer.exe in the WebView component in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY before 8.0 SIM 27, 8.1 before SIM 25, and 8.2 before SIM 19, and Proficy Process Systems with CIMPLICITY, allow remote attackers to execute arbitrary code via crafted data in packets to TCP port 10212, aka ZDI-CAN-1621 and ZDI-CAN-1624.
Published 2013-07-31 · Modified
9.3EPSS 0.038
CVE-2013-0654
CimWebServer in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY 4.01 through 8.0, and Proficy Process Systems with CIMPLICITY, allows remote attackers to execute arbitrary commands or cause a denial of service (daemon crash) via a crafted packet.
Published 2013-01-27 · Modified
9.3EPSS 0.031
CVE-2014-0750
GE Proficy HMI/SCADA Path Traversal
Published 2014-01-25 · Modified
7.51 PoCEPSS 0.702
CVE-2014-0751
GE Proficy HMI/SCADA Path Traversal
Published 2014-01-25 · Modified
7.5EPSS 0.027
CVE-2013-0653
Directory traversal vulnerability in substitute.bcl in the WebView CimWeb subsystem in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY 4.01 through 8.0, and Proficy Process Systems with CIMPLICITY, allows remote attackers to read arbitrary files via a crafted packet.
Published 2013-01-27 · Modified
4.3EPSS 0.191
CVE-2012-4689
Integer overflow in CimWebServer.exe in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY 4.01 through 8.0, and Proficy Process Systems with CIMPLICITY, allows remote attackers to cause a denial of service (daemon crash) via a malformed HTTP request.
Published 2013-01-17 · Modified
4.3EPSS 0.012