Known vulnerabilities in CIMPLICITY

Vendor: GE Digital
Software: CIMPLICITY
Software CPE: cpe:2.3:a:ge_digital:cimplicity:*:*:*:*:*:*:*:*
Total vulnerabilities: 16
Public exploits: 0
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting CIMPLICITY CIMPLICITY is affected by 16 known vulnerabilities: 1 critical, 11 high, 1 medium, 3 low Critical High Medium Low

Vulnerabilities (16)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU80322 - Process Control
CVE-2023-4487
CWE-114 Low
No
No
2023 SIM 1 04.09.2023 SB2023090410
#VU78357 - Heap-based Buffer Overflow
CVE-2023-3463
CWE-122 High
No
No
- 19.07.2023 SB2023071906
#VU69529 - Out-of-bounds write
CVE-2022-3092
CWE-787 High
No
No
- 23.11.2022 SB2022112312
#VU69525 - Heap-based Buffer Overflow
CVE-2022-2948
CWE-122 High
No
No
- 23.11.2022 SB2022112312
#VU69523 - Access of Uninitialized Pointer
CVE-2022-2952
CWE-824 High
No
No
- 23.11.2022 SB2022112312
#VU69522 - Access of Uninitialized Pointer
CVE-2022-3084
CWE-824 High
No
No
- 23.11.2022 SB2022112312
#VU67901 - Access of Uninitialized Pointer
CWE-824 High
No
No
- 04.10.2022 SB2022100424
#VU67900 - Heap-based Buffer Overflow
CWE-122 High
No
No
- 04.10.2022 SB2022100424
#VU67899 - Access of Uninitialized Pointer
CWE-824 High
No
No
- 04.10.2022 SB2022100424
#VU67898 - Untrusted Pointer Dereference
CWE-822 High
No
No
- 04.10.2022 SB2022100424
#VU67897 - Out-of-bounds write
CWE-787 High
No
No
- 04.10.2022 SB2022100424
#VU64477 - Cleartext Transmission of Sensitive Information
CVE-2022-2002
CWE-319 Medium
No
No
- 17.06.2022 SB2022061712
SB2022112312
#VU26705 - Permissions, Privileges, and Access Controls
CVE-2020-6992
CWE-264 Low
No
No
11.0 08.04.2020 SB2020040809
#VU16329 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2018-15362
CWE-611 Low
No
No
- 06.12.2018 SB2018120717
#VU8721 - Stack-based buffer overflow
CVE-2017-12732
CWE-121 High
No
No
- 09.10.2017 SB2017100903
#VU6189 - Improper Access Control
CVE-2014-0751
CWE-284 Critical
No
Exploited
- 05.04.2017 SB2014021401