ICSA-23-199-06
·
Published 2023-07-18
·
View on CISA ICS-CERT ↗
GE Digital CIMPLICITY
CVSS 6.6
MEDIUM
Risk Summary
Successful exploitation of this vulnerability could allow an attacker to cause memory corruption issues resulting in unwanted behavior such as code execution.
CVEs (1)
Remediations
- To obtain the latest versions of GE CIMPLICITY, contact your local GE Digital representative at https://digitalsupport.ge.com/s/contactsupport.
- Exploit is only possible if an authenticated user with local access to the system obtains and opens a document from a malicious source so secure deployment and strong access management by users is essential. GE Digital and customers have a shared responsibility for security and users are required to adhere to the most recent Secure Deployment Guide (SDG) instructions.
- Please refer to GE Digital's security bulletin for more information.
Affected Vendors
GE Digital
Affected Products (1)
GE Digital
·
CIMPLICITY
vers:all/*
Affected Sectors
Multiple Sectors
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more