← Back

Intelligent Platforms Proficy Hmi%2fscada Cimplicity

intelligent_platforms_proficy_hmi%2fscada_cimplicity

Vendor: Ge • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ge
3Intelligent Platforms Proficy Hmi%2fscada Cimplicity
Intelligent Platforms Proficy Hmi/scada CimplicityIntelligent Platforms Proficy Process Systems With Cimplicity
Apr 29, 2026
Jan 25, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
The CIMPLICITY Web-based access component, CimWebServer, does not check the location of shell files being loaded into the system. By modifying the source location, an attacker could send shell code to the CimWebServer...Show more
The CIMPLICITY Web-based access component, CimWebServer, does not check the location of shell files being loaded into the system. By modifying the source location, an attacker could send shell code to the CimWebServer which would deploy the nefarious files as part of any SCADA project. This could allow the attacker to execute arbitrary code.Show less
1Ge
3Intelligent Platforms Proficy Hmi%2fscada Cimplicity
Intelligent Platforms Proficy Hmi/scada CimplicityIntelligent Platforms Proficy Process Systems With Cimplicity
Apr 29, 2026
Jan 25, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
Directory traversal vulnerability in gefebt.exe in the WebView CimWeb components in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY through 8.2 SIM 24, and Proficy Process Systems with CIMPLICITY, allows remote a...Show more
Directory traversal vulnerability in gefebt.exe in the WebView CimWeb components in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY through 8.2 SIM 24, and Proficy Process Systems with CIMPLICITY, allows remote attackers to execute arbitrary code via a crafted HTTP request, aka ZDI-CAN-1622.Show less