Lucene search

K
cve[email protected]CVE-2013-0654
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2013-0654

2022-10-0316:15:03
CWE-20
web.nvd.nist.gov
24
cve-2013-0654
ge
proficy
hmi
scada
cimplicity
remote code execution
vulnerability
nvd

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.8 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

65.1%

CimWebServer in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY 4.01 through 8.0, and Proficy Process Systems with CIMPLICITY, allows remote attackers to execute arbitrary commands or cause a denial of service (daemon crash) via a crafted packet.

Affected configurations

NVD
Node
geintelligent_platforms_proficy_hmi\/scada_cimplicityMatch4.01
OR
geintelligent_platforms_proficy_hmi\/scada_cimplicityMatch7.5
OR
geintelligent_platforms_proficy_hmi\/scada_cimplicityMatch8.0
Node
geintelligent_platforms_proficy_process_systems_with_cimplicityMatch-
AND
geintelligent_platforms_proficy_process_systemsMatch-

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.8 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

65.1%

Related for CVE-2013-0654