Vulnerability Details CVE-2022-2952
GE CIMPICITY versions 2022 and prior is
vulnerable when data from a faulting address controls code flow starting at gmmiObj!CGmmiOptionContainer, which could allow an attacker to execute arbitrary code.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 18.0%
CVSS Severity
CVSS v3 Score 7.8
Products affected by CVE-2022-2952
-
cpe:2.3:a:ge:cimplicity:-
-
cpe:2.3:a:ge:cimplicity:10.0
-
cpe:2.3:a:ge:cimplicity:11.0
-
cpe:2.3:a:ge:cimplicity:11.1
-
cpe:2.3:a:ge:cimplicity:2022
-
cpe:2.3:a:ge:cimplicity:6.1
-
cpe:2.3:a:ge:cimplicity:7.0
-
cpe:2.3:a:ge:cimplicity:7.5
-
cpe:2.3:a:ge:cimplicity:8.0
-
cpe:2.3:a:ge:cimplicity:8.1
-
cpe:2.3:a:ge:cimplicity:8.2
-
cpe:2.3:a:ge:cimplicity:9.0
-
cpe:2.3:a:ge:cimplicity:9.0_r2
-
cpe:2.3:a:ge:cimplicity:9.5