Back

HIGH

GE CIMPLICITY Out-of-bounds Write

Published Dec 7, 2022

Description

GE CIMPICITY versions 2022 and prior is

vulnerable to an out-of-bounds write, which could allow an attacker to execute arbitrary code.

Affected products

Remediation

Vendor solution

GE recommends users refer to the CIMPLICITY Secure Deployment Guide https://digitalsupport.ge.com/communities/en_US/Documentation/CIMPLICITY-Secure-Deployment-Guide2  (login required) for mitigations to the reported vulnerabilities. Specific sections to reference include Section 3.5 Projects and Section 4.2 CimView.

For more information about this issue, see the GE Digital Product Security Advisory https://digitalsupport.ge.com/communities/en_US/Article/GE-Digital-Security-Advisory-GED-22-06  (login required).

For further questions, users should contact GE https://digitalsupport.ge.com/communities/CC_Contact .

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner icscert
Published Dec 7, 2022
Updated Apr 16, 2025
Reserved Sep 1, 2022
CISA Vulnrichment
Updated Apr 16, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner icscert
Published Dec 7, 2022
Updated Apr 16, 2025
Exploited since n/a
EUVD-2022-42521