Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-2002


GE CIMPICITY versions 2022 and prior is vulnerable when data from faulting address controls code flow starting at gmmiObj!CGmmiOptionContainer, which could allow an attacker to execute arbitrary code.


Published

2022-12-07T23:15:09.850

Last Modified

2024-11-21T07:00:09.353

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Primary
    CWE-822

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ge cimplicity ≤ 2022 Yes

References