Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ge vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2022-24120
Certain General Electric Renewable Energy products store cleartext credentials in flash memory. This affects iNET and iNET II prior to 8.3.0.
Ge Inet 900 Firmware
Ge Inet Ii 900 Firmware
Ge Sd1 Firmware
Ge Sd2 Firmware
Ge Sd4 Firmware
Ge Sd9 Firmware
Ge Td220max Firmware
Ge Td220x Firmware
NA
CVE-2022-24116
Certain General Electric Renewable Energy products have inadequate encryption strength. This affects iNET and iNET II prior to 8.3.0.
Ge Inet 900 Firmware
Ge Inet Ii 900 Firmware
Ge Sd1 Firmware
Ge Sd2 Firmware
Ge Sd4 Firmware
Ge Sd9 Firmware
Ge Td220max Firmware
Ge Td220x Firmware
NA
CVE-2022-24117
Certain General Electric Renewable Energy products download firmware without an integrity check. This affects iNET and iNET II prior to 8.3.0, SD prior to 6.4.7, TD220X prior to 2.0.16, and TD220MAX prior to 1.2.6.
Ge Inet 900 Firmware
Ge Inet Ii 900 Firmware
Ge Sd1 Firmware
Ge Sd2 Firmware
Ge Sd4 Firmware
Ge Sd9 Firmware
Ge Td220max Firmware
Ge Td220x Firmware
NA
CVE-2022-24119
Certain General Electric Renewable Energy products have a hidden feature for unauthenticated remote access to the device configuration shell. This affects iNET and iNET II prior to 8.3.0.
Ge Inet 900 Firmware
Ge Inet Ii 900 Firmware
Ge Sd1 Firmware
Ge Sd2 Firmware
Ge Sd4 Firmware
Ge Sd9 Firmware
Ge Td220max Firmware
Ge Td220x Firmware
890
VMScore
CVE-2009-0216
GE Fanuc iFIX 5.0 and previous versions relies on client-side authentication involving a weakly encrypted local password file, which allows remote malicious users to bypass intended access restrictions and start privileged server login sessions by recovering a password or by usin...
Ge Fanuc Ifix 2.5
Ge Fanuc Ifix 3.0
Ge Fanuc Ifix 3.5
Ge Fanuc Ifix 2.0
Ge Fanuc Ifix
Ge Fanuc Ifix 2.21
Ge Fanuc Ifix 4.0
Ge Fanuc Ifix 2.6
Ge Fanuc Ifix 2.2
Ge Fanuc Ifix 4.5
1 Github repository
668
VMScore
CVE-2017-14006
GE Xeleris versions 1.0,1.1,2.1,3.0,3.1, medical imaging systems, all current versions are affected, these devices use default or hard-coded credentials. Successful exploitation of this vulnerability may allow a remote malicious user to bypass authentication and gain access to th...
Ge Xeleris 1.0
Ge Xeleris 1.1
Ge Xeleris 2.1
Ge Xeleris 3.0
Ge Xeleris 3.1
392
VMScore
CVE-2016-9360
An issue exists in General Electric (GE) Proficy HMI/SCADA iFIX Version 5.8 SIM 13 and prior versions, Proficy HMI/SCADA CIMPLICITY Version 9.0 and prior versions, and Proficy Historian Version 6.0 and prior versions. An attacker may be able to retrieve user passwords if he or sh...
Ge Cimplicity
Ge Historian
Ge Ifix
1 Article
694
VMScore
CVE-2018-8867
In GE PACSystems RX3i CPE305/310 version 9.20 and prior, RX3i CPE330 version 9.21 and prior, RX3i CPE 400 version 9.30 and prior, PACSystems RSTi-EP CPE 100 all versions, and PACSystems CPU320/CRU320 RXi all versions, the device does not properly validate input, which could allow...
Ge Pacsystems Rx3i Cpe305 Firmware
Ge Pacsystems Rx3i Cpe310 Firmware
Ge Rx3i Cpe330 Firmware
Ge Rx3i Cpe 400 Firmware
Ge Pacsystems Rsti-ep Cpe 100 Firmware -
Ge Pacsystems Cpu320 Firmware -
Ge Pacsystems Cru320 Firmware -
Ge Pacsystems Rxi Firmware -
312
VMScore
CVE-2015-3976
Cross-site scripting (XSS) vulnerability in GE Multilink ML810/3000/3100 series switch 5.2.0 and previous versions, and GE Multilink ML800/1200/1600/2400 4.2.1 and previous versions.
Ge Multilink Ml810 Firmware 5.2.0
Ge Multilink Ml3000 Firmware
Ge Multilink Ml3100 Firmware
Ge Multilink Ml800 Firmware 4.2.1
Ge Multilink Ml1200 Firmware 4.2.1
Ge Multilink Ml1600 Firmware 4.2.1
Ge Multilink Ml2400 Firmware 4.2.1
801
VMScore
CVE-2020-25197
A code injection vulnerability exists in one of the webpages in GE Reason RT430, RT431 & RT434 GNSS clocks in firmware versions prior to version 08A06 that could allow an authenticated remote malicious user to execute arbitrary code on the system.
Ge Rt430 Firmware
Ge Rt431 Firmware
Ge Rt434 Firmware
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27802
template injection
CVE-2024-0044
code injection
CVE-2024-35474
CVE-2024-27857
CVE-2024-23251
CVE-2024-23692
physical
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »