CVE-2023-0598
- EPSS 0.05%
- Published 16.03.2023 20:15:11
- Last modified 21.11.2024 07:37:27
GE Digital Proficy iFIX 2022, GE Digital Proficy iFIX v6.1, and GE Digital Proficy iFIX v6.5 are vulnerable to code injection, which may allow an attacker to insert malicious configuration files in the expected web server execution path and gain ful...
CVE-2019-18243
- EPSS 0.04%
- Published 18.02.2021 17:15:13
- Last modified 21.11.2024 04:32:54
HMI/SCADA iFIX (Versions 6.1 and prior) allows a local authenticated user to modify system-wide iFIX configurations through the registry. This may allow privilege escalation.
CVE-2019-18255
- EPSS 0.04%
- Published 18.02.2021 15:15:12
- Last modified 21.11.2024 04:32:55
HMI/SCADA iFIX (Versions 6.1 and prior) allows a local authenticated user to modify system-wide iFIX configurations through section objects. This may allow privilege escalation.
CVE-2018-17925
- EPSS 0.06%
- Published 10.10.2018 17:29:04
- Last modified 21.11.2024 03:55:13
Multiple instances of this vulnerability (Unsafe ActiveX Control Marked Safe For Scripting) have been identified in the third-party ActiveX object provided to GE iFIX versions 2.0 - 5.8 by Gigasoft. Only the independent use of the Gigasoft charting p...
CVE-2016-9360
- EPSS 0.16%
- Published 13.02.2017 21:59:02
- Last modified 20.04.2025 01:37:25
An issue was discovered in General Electric (GE) Proficy HMI/SCADA iFIX Version 5.8 SIM 13 and prior versions, Proficy HMI/SCADA CIMPLICITY Version 9.0 and prior versions, and Proficy Historian Version 6.0 and prior versions. An attacker may be able ...