← Back

CVE-2022-24117

nvd nist
Published: Dec 26, 2022Modified: Jun 17, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

Certain General Electric Renewable Energy products download firmware without an integrity check. This affects iNET and iNET II before 8.3.0, SD before 6.4.7, TD220X before 2.0.16, and TD220MAX before 1.2.6.

Affected (8)

8 products
Inet 900 Firmware
Inet Ii 900 Firmware
Sd1 Firmware
Sd2 Firmware
Sd4 Firmware
Sd9 Firmware
Td220max Firmware
Td220x Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 8.3.0
Running on/withPlatform Versions
Ge
Inet 900
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 8.3.0
Running on/withPlatform Versions
Ge
Inet Ii 900
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Up to 6.4.7
Running on/withPlatform Versions
Ge
Sd1
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 6.4.7
Running on/withPlatform Versions
Ge
Sd2
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 6.4.7
Running on/withPlatform Versions
Ge
Sd4
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 6.4.7
Running on/withPlatform Versions
Ge
Sd9
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.2.6
Running on/withPlatform Versions
Ge
Td220max
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.0.16
Running on/withPlatform Versions
Ge
Td220x
All versions

References (2)

Source: cve@mitre.org
PatchThird Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party AdvisoryUS Government Resource

Timeline

No history available yet.