Vulnerabilities
Vulnerable Software
Ge:  >> Ifix  >> 6.1  Security Vulnerabilities
GE Digital Proficy iFIX 2022, GE Digital Proficy iFIX v6.1, and GE Digital Proficy iFIX v6.5 are vulnerable to code injection, which may allow an attacker to insert malicious configuration files in the expected web server execution path and gain full control of the HMI software.
CVSS Score
7.8
EPSS Score
0.001
Published
2023-03-16
HMI/SCADA iFIX (Versions 6.1 and prior) allows a local authenticated user to modify system-wide iFIX configurations through the registry. This may allow privilege escalation.
CVSS Score
5.5
EPSS Score
0.0
Published
2021-02-18
HMI/SCADA iFIX (Versions 6.1 and prior) allows a local authenticated user to modify system-wide iFIX configurations through section objects. This may allow privilege escalation.
CVSS Score
5.5
EPSS Score
0.0
Published
2021-02-18


Contact Us

Shodan ® - All rights reserved