Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ge ifix vulnerabilities and exploits
(subscribe to this query)
890
VMScore
CVE-2009-0216
GE Fanuc iFIX 5.0 and previous versions relies on client-side authentication involving a weakly encrypted local password file, which allows remote malicious users to bypass intended access restrictions and start privileged server login sessions by recovering a password or by usin...
Ge Fanuc Ifix
Ge Fanuc Ifix 2.21
Ge Fanuc Ifix 2.2
Ge Fanuc Ifix 3.5
Ge Fanuc Ifix 3.0
Ge Fanuc Ifix 2.6
Ge Fanuc Ifix 2.5
Ge Fanuc Ifix 4.5
Ge Fanuc Ifix 4.0
Ge Fanuc Ifix 2.0
1 Github repository
NA
CVE-2023-0598
GE Digital Proficy iFIX 2022, GE Digital Proficy iFIX v6.1, and GE Digital Proficy iFIX v6.5 are vulnerable to code injection, which may allow an malicious user to insert malicious configuration files in the expected web server execution path and gain full control of the HMI sof...
Ge Ifix 6.5
Ge Ifix 2022
Ge Ifix 6.1
392
VMScore
CVE-2016-9360
An issue exists in General Electric (GE) Proficy HMI/SCADA iFIX Version 5.8 SIM 13 and prior versions, Proficy HMI/SCADA CIMPLICITY Version 9.0 and prior versions, and Proficy Historian Version 6.0 and prior versions. An attacker may be able to retrieve user passwords if he or sh...
Ge Cimplicity
Ge Historian
Ge Ifix
1 Article
187
VMScore
CVE-2019-18243
HMI/SCADA iFIX (Versions 6.1 and prior) allows a local authenticated user to modify system-wide iFIX configurations through the registry. This may allow privilege escalation.
Ge Ifix
187
VMScore
CVE-2019-18255
HMI/SCADA iFIX (Versions 6.1 and prior) allows a local authenticated user to modify system-wide iFIX configurations through section objects. This may allow privilege escalation.
Ge Ifix
392
VMScore
CVE-2018-17925
Multiple instances of this vulnerability (Unsafe ActiveX Control Marked Safe For Scripting) have been identified in the third-party ActiveX object provided to GE iFIX versions 2.0 - 5.8 by Gigasoft. Only the independent use of the Gigasoft charting package outside the iFIX produc...
Ge Ifix
935
VMScore
CVE-2012-2516
An ActiveX control in KeyHelp.ocx in KeyWorks KeyHelp Module (aka the HTML Help component), as used in GE Intelligent Platforms Proficy Historian 3.1, 3.5, 4.0, and 4.5; Proficy HMI/SCADA iFIX 5.0 and 5.1; Proficy Pulse 1.0; Proficy Batch Execution 5.6; SI7 I/O Driver 7.20 up to ...
Ge Intelligent Platforms Proficy Historian 3.1
Ge Intelligent Platforms Proficy Historian 3.5
Ge Intelligent Platforms Proficy Historian 4.5
Ge Intelligent Platforms Proficy Hmi\\/scada Ifix 5.1
Ge Intelligent Platforms Proficy Batch Execution 5.6
Ge Intelligent Platforms Si7 I\\/o Driver 7.20
Ge Intelligent Platforms Si7 I\\/o Driver 7.42
Ge Intelligent Platforms Proficy Pulse 1.0
Ge Intelligent Platforms Proficy Historian 4.0
Ge Intelligent Platforms Proficy Hmi\\/scada Ifix 5.0
1 EDB exploit
970
VMScore
CVE-2012-2515
Multiple stack-based buffer overflows in the KeyHelp.KeyCtrl.1 ActiveX control in KeyHelp.ocx 1.2.312 in KeyWorks KeyHelp Module (aka the HTML Help component), as used in EMC Documentum ApplicationXtender Desktop 5.4; EMC Captiva Quickscan Pro 4.6 SP1; GE Intelligent Platforms Pr...
Ge Intelligent Platforms Proficy Historian 3.5
Ge Intelligent Platforms Proficy Historian 4.0
Ge Intelligent Platforms Proficy Historian 4.5
Ge Intelligent Platforms Proficy Hmi\\/scada Ifix 5.0
Emc Captiva Quickscan Pro 4.6
Ge Intelligent Platforms Proficy Batch Execution 5.6
Ge Intelligent Platforms Si7 I\\/o Driver 7.42
Ge Intelligent Platforms Proficy Pulse 1.0
Emc Documentum Applicationxtender Desktop 5.4
Ge Intelligent Platforms Proficy Historian 3.1
Ge Intelligent Platforms Proficy Hmi\\/scada Ifix 5.1
Ge Intelligent Platforms Si7 I\\/o Driver 7.20
632
VMScore
CVE-2013-2811
The (1) Catapult DNP3 I/O driver prior to 7.2.0.60 and the (2) GE Intelligent Platforms Proficy DNP3 I/O driver prior to 7.20k, as used in DNPDrv.exe (aka the DNP master station server) in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY and iFIX, allow remote malicious us...
Ge Intelligent Platforms Proficy Dnp3 I\\/o Driver 7.20
Ge Intelligent Platforms Proficy Hmi\\/scada Cimplicity 4.01
Ge Intelligent Platforms Proficy Hmi\\/scada Cimplicity 7.5
Ge Intelligent Platforms Proficy Hmi\\/scada Cimplicity 8.0
Ge Intelligent Platforms Proficy Hmi\\/scada Cimplicity 8.1
Ge Intelligent Platforms Proficy Hmi\\/scada Cimplicity 8.2
Ge Intelligent Platforms Proficy Hmi\\/scada Ifix 5.0
Catapultsoftware Catapult Dnp3 I\\/o Driver
Ge Intelligent Platforms Proficy Hmi\\/scada Ifix 5.1
Ge Intelligent Platforms Proficy Dnp3 I\\/o Driver
418
VMScore
CVE-2013-2823
The (1) Catapult DNP3 I/O driver prior to 7.2.0.60 and the (2) GE Intelligent Platforms Proficy DNP3 I/O driver prior to 7.20k, as used in DNPDrv.exe (aka the DNP master station server) in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY and iFIX, allow physically proximat...
Ge Intelligent Platforms Proficy Hmi\\/scada Ifix 5.1
Catapultsoftware Catapult Dnp3 I\\/o Driver
Ge Intelligent Platforms Proficy Dnp3 I\\/o Driver
Ge Intelligent Platforms Proficy Dnp3 I\\/o Driver 7.20
Ge Intelligent Platforms Proficy Hmi\\/scada Cimplicity 4.01
Ge Intelligent Platforms Proficy Hmi\\/scada Cimplicity 7.5
Ge Intelligent Platforms Proficy Hmi\\/scada Cimplicity 8.1
Ge Intelligent Platforms Proficy Hmi\\/scada Ifix 5.0
Ge Intelligent Platforms Proficy Hmi\\/scada Cimplicity 8.0
Ge Intelligent Platforms Proficy Hmi\\/scada Cimplicity 8.2
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
NULL pointer dereference
CVE-2023-52689
CVE-2024-23803
client side
CVE-2023-52696
information disclosure
CVE-2024-35843
CVE-2024-27130
CVE-2023-52697
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started