← Back to home
ICSA-18-340-01  ·  Published 2018-12-06  ·  View on CISA ICS-CERT ↗

GE Proficy GDS

CVSS 8.2 HIGH

Risk Summary

Successful exploitation of this vulnerability could allow an attacker to initiate an OPC UA session and retrieve an arbitrary file.

CVEs (1)

Remediations

  • GE recommends users update to Version 2.1 or newer.
  • GE has released a security advisory

Affected Vendors

General Electric (GE)

Affected Products (3)

General Electric (GE) · Cimplicity 9.5
General Electric (GE) · Cimplicity 10.0
General Electric (GE) · Cimplicity 9.0 R2

Affected Sectors

Chemical, Critical Manufacturing, Dams, Energy, Food and Agriculture, Government Facilities, Transportation Systems, Water and Wastewater Systems

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more