CVE Tools

Cimplicity

13 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Cimplicity, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.

Cimplicity CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Cimplicity CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-050
2025-060
2025-070
2025-080
2025-090
2025-100
2025-110
2025-120
2026-010
2026-020
2026-030
2026-040
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 13 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical215%
  • High754%
  • Medium431%

Latest CVEs

The 13 most recently published vulnerabilities affecting Cimplicity.

  1. CVE-2023-4487GE Digital CIMPLICITY Process Control7.8
  2. CVE-2023-3463GE Digital CIMPLICITY Heap-based Buffer Overflow6.6
  3. CVE-2022-3092GE CIMPLICITY Out-of-bounds Write7.8
  4. CVE-2022-3084GE CIMPLICITY Access of Uninitialized Pointer7.8
  5. CVE-2022-2952GE CIMPLICITY Access of Uninitialized Pointer7.8
  6. CVE-2022-2948GE CIMPLICITY Heap-based Buffer Overflow7.8
  7. CVE-2022-2002GE CIMPLICITY Untrusted Pointer Dereference7.8
  8. CVE-2022-21798ICSA-22-053-02 GE Proficy CIMPLICITY-Cleartext7.5
  9. CVE-2020-6992A local privilege escalation vulnerability has been identified in the GE Digital CIMPLICITY HMI/SCADA product v10.0 and prior. If exploited, this vulnerability could allow an adversary to modify th...6.7
  10. CVE-2018-15362XXE in GE Proficy Cimplicity GDS versions 9.0 R2, 9.5, 10.09.1
  11. CVE-2016-9360An issue was discovered in General Electric (GE) Proficy HMI/SCADA iFIX Version 5.8 SIM 13 and prior versions, Proficy HMI/SCADA CIMPLICITY Version 9.0 and prior versions, and Proficy Historian Ver...6.7
  12. CVE-2016-5787General Electric (GE) Digital Proficy HMI/SCADA - CIMPLICITY before 8.2 SIM 27 mishandles service DACLs, which allows local users to modify a service configuration via unspecified vectors.6.3
  13. CVE-2008-0176Heap-based buffer overflow in w32rtr.exe in GE Fanuc CIMPLICITY HMI SCADA system 7.0 before 7.0 SIM 9, and earlier versions before 6.1 SP6 Hot fix - 010708_162517_6106, allow remote attackers to ex...10.0

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store