Vulnerability Details CVE-2014-0751
Directory traversal vulnerability in CimWebServer.exe (aka the WebView component) in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY before 8.2 SIM 24, and Proficy Process Systems with CIMPLICITY, allows remote attackers to execute arbitrary code via a crafted message to TCP port 10212, aka ZDI-CAN-1623.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 72.1%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2014-0751
-
cpe:2.3:a:ge:intelligent_platforms_proficy_hmi%2fscada_cimplicity:8.2
-
cpe:2.3:a:ge:intelligent_platforms_proficy_hmi/scada_cimplicity:4.01
-
cpe:2.3:a:ge:intelligent_platforms_proficy_hmi/scada_cimplicity:7.5
-
cpe:2.3:a:ge:intelligent_platforms_proficy_hmi/scada_cimplicity:8.0
-
cpe:2.3:a:ge:intelligent_platforms_proficy_hmi/scada_cimplicity:8.1
-
cpe:2.3:a:ge:intelligent_platforms_proficy_hmi/scada_cimplicity:8.2
-
cpe:2.3:a:ge:intelligent_platforms_proficy_process_systems_with_cimplicity:-