Loading HuntDB...

GE

14 Products 23 CVEs

CVE Severity Distribution (All Time)

Critical
3
High
7
Medium
6
Low
0

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 0 CVEs

Recent CVEs

View all
CVE-2024-6098 MEDIUM 1 year, 3 months ago

When performing an online tag generation to devices which communicate using the ControlLogix protocol, a machine-in-the-middle, or a device that is…

CVE-2022-3092 HIGH 2 years, 11 months ago

GE CIMPICITY versions 2022 and prior is vulnerable to an out-of-bounds write, which could allow an attacker to execute arbitrary code. …

CVE-2022-3084 HIGH 2 years, 11 months ago

GE CIMPICITY versions 2022 and prior is vulnerable when data from a faulting address controls code flow starting at gmmiObj!CGmmiRootOptionTable, whi…

CVE-2022-2952 HIGH 2 years, 11 months ago

GE CIMPICITY versions 2022 and prior is vulnerable when data from a faulting address controls code flow starting at gmmiObj!CGmmiOptionContainer, w…

CVE-2022-2948 HIGH 2 years, 11 months ago

GE CIMPICITY versions 2022 and prior is vulnerable to a heap-based buffer overflow, which could allow an attacker to execute arbitrary code.

CVE-2022-2002 HIGH 2 years, 11 months ago

GE CIMPICITY versions 2022 and prior is vulnerable when data from faulting address controls code flow starting at gmmiObj!CGmmiOptionContainer, w…

CVE-2021-27422 HIGH 3 years, 8 months ago

GE UR firmware versions prior to version 8.1x web server interface is supported on UR over HTTP protocol. It allows sensitive information exposure wi…

CVE-2021-27426 CRITICAL 3 years, 8 months ago

GE UR IED firmware versions prior to version 8.1x with “Basic” security variant does not allow the disabling of the “Factory Mode,” which is used for…

CVE-2021-27430 HIGH 3 years, 8 months ago

GE UR bootloader binary Version 7.00, 7.01 and 7.02 included unused hardcoded credentials. Additionally, a user with physical access to the UR IED ca…

CVE-2021-27424 MEDIUM 3 years, 8 months ago

GE UR firmware versions prior to version 8.1x shares MODBUS memory map as part of the communications guide. GE was made aware a “Last-key pressed” MO…