Fiche vulnérabilité
CVE-2022-2002 : faille élevée ge cimplicity (CVSS 7.8)
Description
GE CIMPICITY versions 2022 and prior is vulnerable when data from faulting address controls code flow starting at gmmiObj!CGmmiOptionContainer, which could allow an attacker to execute arbitrary code.
En bref
- Sévérité
- Élevée (CVSS 7.8)
- Vecteur CVSS
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 7 déc. 2022
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- ge cimplicity