Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
ICSA-22-053-02 GE Proficy CIMPLICITY-Cleartext
Vulnerability Description
The affected product is vulnerable due to cleartext transmission of credentials seen in the CIMPLICITY network, which can be easily spoofed and used to log in to make operational changes to the system.
CVSS Information
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
敏感数据的明文传输
Vulnerability Title
General Electric Proficy Cimplicity 安全漏洞
Vulnerability Description
General Electric Proficy Cimplicity(Ge Proficy Cimplicity)是美国General Electric公司的一个基于客户端/服务器的 Hmi/Scada 解决方案。用于收集和共享所有业务级别的实时和历史数据,并提供可操作的可见性来监控和控制工厂流程、设备和资源。 General Electric Proficy Cimplicity 存在安全漏洞,该漏洞源于在CIMPLICITY网络中可以看到凭据的明文传输。攻击者可利用该漏洞登录系统进行操作更改。
CVSS Information
N/A
Vulnerability Type
N/A