ZeroHour

CVE-2022-24117

CVSS 3.1
9.8 critical
EPSS
<1%p29
Published
()
Modified
Description

Certain General Electric Renewable Energy products download firmware without an integrity check. This affects iNET and iNET II before 8.3.0, SD before 6.4.7, TD220X before 2.0.16, and TD220MAX before 1.2.6.

Vendors
ge
Products
inet 900 firmware, inet ii 900 firmware, sd1 firmware, sd2 firmware, sd4 firmware, sd9 firmware, td220max firmware, td220x firmware
Weakness
CWE-494
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.