CVE-2022-24117
—CVSS 3.1
9.8 critical
EPSS
<1%p29
Published
()
Modified
Description
Certain General Electric Renewable Energy products download firmware without an integrity check. This affects iNET and iNET II before 8.3.0, SD before 6.4.7, TD220X before 2.0.16, and TD220MAX before 1.2.6.
- Vendors
- ge
- Products
- inet 900 firmware, inet ii 900 firmware, sd1 firmware, sd2 firmware, sd4 firmware, sd9 firmware, td220max firmware, td220x firmware
- Weakness
- CWE-494
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.