Vulnerability Details CVE-2022-23921
Exploitation of this vulnerability may result in local privilege escalation and code execution. GE maintains exploitation of this vulnerability is only possible if the attacker has login access to a machine actively running CIMPLICITY, the CIMPLICITY server is not already running a project, and the server is licensed for multiple projects.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 10.1%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 3.7
Products affected by CVE-2022-23921
-
cpe:2.3:a:ge:proficy_cimplicitiy:-
-
cpe:2.3:a:ge:proficy_cimplicitiy:11.1