CVE-2022-43494

An unauthorized user could be able to read any file on the system, potentially exposing sensitive information.
References
Link Resource
https://digitalsupport.ge.com/s/article/GE-Digital-Product-Security-Advisory-GED-23-01 Permissions Required Vendor Advisory
https://www.cisa.gov/uscert/ics/advisories/icsa-23-017-01 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

cpe:2.3:a:ge:proficy_historian:*:*:*:*:*:*:*:*

History

07 Nov 2023, 03:53

Type Values Removed Values Added
Summary An unauthorized user could be able to read any file on the system, potentially exposing sensitive information. An unauthorized user could be able to read any file on the system, potentially exposing sensitive information.

06 Jul 2023, 14:46

Type Values Removed Values Added
CWE CWE-284 NVD-CWE-Other

25 Jan 2023, 16:38

Type Values Removed Values Added
First Time Ge
Ge proficy Historian
CPE cpe:2.3:a:ge:proficy_historian:*:*:*:*:*:*:*:*
References (MISC) https://digitalsupport.ge.com/s/article/GE-Digital-Product-Security-Advisory-GED-23-01 - (MISC) https://digitalsupport.ge.com/s/article/GE-Digital-Product-Security-Advisory-GED-23-01 - Permissions Required, Vendor Advisory
References (MISC) https://www.cisa.gov/uscert/ics/advisories/icsa-23-017-01 - (MISC) https://www.cisa.gov/uscert/ics/advisories/icsa-23-017-01 - Third Party Advisory, US Government Resource
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5

18 Jan 2023, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-01-18 00:15

Updated : 2023-12-10 14:48


NVD link : CVE-2022-43494

Mitre link : CVE-2022-43494

CVE.ORG link : CVE-2022-43494


JSON object : View

Products Affected

ge

  • proficy_historian
CWE
NVD-CWE-Other CWE-284

Improper Access Control