ZeroHour

CVE-2023-4487

CVSS 3.1
7.8 high
EPSS
<1%p10
Published
()
Modified
Description

GE CIMPLICITY 2023 is by a process control vulnerability, which could allow a local attacker to insert malicious configuration files in the expected web server execution path to escalate privileges and gain full control of the HMI software.

Vendors
ge
Products
cimplicity
Weakness
CWE-114
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.