Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ge vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2012-0232
Directory traversal vulnerability in rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6, 3.0, 3.0 SP1, and 3.5 allows remote malicious users to modify the configuration via crafted strings.
Ge Intelligent Platforms Proficy Real-time Information Portal 2.6
Ge Intelligent Platforms Proficy Real-time Information Portal 3.0
Ge Intelligent Platforms Proficy Real-time Information Portal 3.5
NA
CVE-2012-3010
rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 up to and including 3.5 SP1 allows remote malicious users to cause a denial of service (memory corruption and service crash) or possibly execute arbitrary code via lon...
Ge Intelligent Platforms Proficy Real-time Information Portal 3.5
Ge Intelligent Platforms Proficy Real-time Information Portal 2.6
Ge Intelligent Platforms Proficy Real-time Information Portal 3.0
NA
CVE-2012-3021
rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 up to and including 3.5 SP1 allows remote malicious users to cause a denial of service (memory corruption and service crash) or possibly execute arbitrary code via lon...
Ge Intelligent Platforms Proficy Real-time Information Portal 2.6
Ge Intelligent Platforms Proficy Real-time Information Portal 3.0
Ge Intelligent Platforms Proficy Real-time Information Portal 3.5
6.5
CVSSv3
CVE-2022-46660
An unauthorized user could alter or write files with full control over the path and content of the file.
Ge Proficy Historian
9.8
CVSSv3
CVE-2022-46732
Even if the authentication fails for local service authentication, the requested command could still execute regardless of authentication status.
Ge Proficy Historian
7.8
CVSSv3
CVE-2023-4487
GE CIMPLICITY 2023 is by a process control vulnerability, which could allow a local malicious user to insert malicious configuration files in the expected web server execution path to escalate privileges and gain full control of the HMI software.
Ge Cimplicity 2023
7.3
CVSSv3
CVE-2021-31477
This vulnerability allows remote malicious users to execute arbitrary code on affected installations of GE Reason RPV311 14A03. Authentication is not required to exploit this vulnerability. The specific flaw exists within the firmware and filesystem of the device. The firmware an...
Ge Reason Rpv311 Firmware 14a03
NA
CVE-2014-5409
The 17046 Ethernet card prior to 94450214LFMT100SEM-L.R3-CL for the GE Digital Energy Hydran M2 does not properly generate random values for TCP Initial Sequence Numbers (ISNs), which makes it easier for remote malicious users to spoof packets by predicting these values.
Ge Hydran M2
7.5
CVSSv3
CVE-2018-10613
Multiple variants of XML External Entity (XXE) attacks may be used to exfiltrate data from the host Windows platform in GE MDS PulseNET and MDS PulseNET Enterprise version 3.2.1 and prior.
Ge Mds Pulsenet
9.8
CVSSv3
CVE-2018-10611
Java remote method invocation (RMI) input port in GE MDS PulseNET and MDS PulseNET Enterprise version 3.2.1 and prior may be exploited to allow unauthenticated users to launch applications and support remote code execution through web services.
Ge Mds Pulsenet
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4367
CVE-2024-3611
CVE-2024-4947
CVE-2024-32988
CVE-2020-35165
local file inclusion
CVE-2024-4980
bypass
malicious code
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
5
6
7
8
9
10
NEXT »