CVE-2022-2002 Information

Description

GE CIMPICITY versions 2022 and prior is vulnerable when data from faulting address controls code flow starting at gmmiObj!CGmmiOptionContainer which could allow an attacker to execute arbitrary code.

Reference

https://www.cisa.gov/uscert/ics/advisories/icsa-22-326-04

Share on: