Cimplicity
13 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Cimplicity, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.
Cimplicity CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 13 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical2
- High7
- Medium4
Latest CVEs
The 13 most recently published vulnerabilities affecting Cimplicity.
- CVE-2023-4487GE Digital CIMPLICITY Process Control7.8
- CVE-2023-3463GE Digital CIMPLICITY Heap-based Buffer Overflow6.6
- CVE-2022-3092GE CIMPLICITY Out-of-bounds Write7.8
- CVE-2022-3084GE CIMPLICITY Access of Uninitialized Pointer7.8
- CVE-2022-2952GE CIMPLICITY Access of Uninitialized Pointer7.8
- CVE-2022-2948GE CIMPLICITY Heap-based Buffer Overflow7.8
- CVE-2022-2002GE CIMPLICITY Untrusted Pointer Dereference7.8
- CVE-2022-21798ICSA-22-053-02 GE Proficy CIMPLICITY-Cleartext7.5
- CVE-2020-6992A local privilege escalation vulnerability has been identified in the GE Digital CIMPLICITY HMI/SCADA product v10.0 and prior. If exploited, this vulnerability could allow an adversary to modify th...6.7
- CVE-2018-15362XXE in GE Proficy Cimplicity GDS versions 9.0 R2, 9.5, 10.09.1
- CVE-2016-9360An issue was discovered in General Electric (GE) Proficy HMI/SCADA iFIX Version 5.8 SIM 13 and prior versions, Proficy HMI/SCADA CIMPLICITY Version 9.0 and prior versions, and Proficy Historian Ver...6.7
- CVE-2016-5787General Electric (GE) Digital Proficy HMI/SCADA - CIMPLICITY before 8.2 SIM 27 mishandles service DACLs, which allows local users to modify a service configuration via unspecified vectors.6.3
- CVE-2008-0176Heap-based buffer overflow in w32rtr.exe in GE Fanuc CIMPLICITY HMI SCADA system 7.0 before 7.0 SIM 9, and earlier versions before 6.1 SP6 Hot fix - 010708_162517_6106, allow remote attackers to ex...10.0
Product grouping is registry-driven, with AI assist and human review. How it works