CVE-2016-5787

medium

Description

General Electric (GE) Digital Proficy HMI/SCADA - CIMPLICITY before 8.2 SIM 27 mishandles service DACLs, which allows local users to modify a service configuration via unspecified vectors.

References

https://ics-cert.us-cert.gov/advisories/ICSA-16-194-02

https://ge-ip.force.com/communities/en_US/Article/GE-Digital-Security-Advisory-GED-16-01

Details

Source: Mitre, NVD

Published: 2016-07-15

Updated: 2022-02-03

Risk Information

CVSS v2

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:P/A:P

Severity: Medium

CVSS v3

Base Score: 6.3

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L

Severity: Medium