Skip to main content

Vendor/product archive

ge / ifix CVEs

Beta · best-effort

5 CVEs tagged to ge / ifix0 Critical, 1 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2023-0598

Published Mar 16, 2023

GE Digital Proficy iFIX 2022, GE Digital Proficy iFIX v6.1, and GE Digital Proficy iFIX v6.5 are vulnerable to code injection, which may allow an attacker to insert malicious conf…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-18243

Published Feb 18, 2021

HMI/SCADA iFIX (Versions 6.1 and prior) allows a local authenticated user to modify system-wide iFIX configurations through the registry. This may allow privilege escalation.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-18255

Published Feb 18, 2021

HMI/SCADA iFIX (Versions 6.1 and prior) allows a local authenticated user to modify system-wide iFIX configurations through section objects. This may allow privilege escalation.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-17925

Published Oct 10, 2018

Multiple instances of this vulnerability (Unsafe ActiveX Control Marked Safe For Scripting) have been identified in the third-party ActiveX object provided to GE iFIX versions 2.0…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-9360

Published Feb 13, 2017

An issue was discovered in General Electric (GE) Proficy HMI/SCADA iFIX Version 5.8 SIM 13 and prior versions, Proficy HMI/SCADA CIMPLICITY Version 9.0 and prior versions, and Pro…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1