← All CVEs

CVE-2013-0653

medium · 4.3

Directory traversal vulnerability in substitute.bcl in the WebView CimWeb subsystem in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY 4.01 through 8.0, and Proficy Process Systems with CIMPLICITY, allows remote attackers to read arbitrary files via a crafted packet.

4.3
CVSS
19.1%
EPSS (exploit prob.)
97th
EPSS percentile
2013-01-27
Published

AV:N/AC:M/Au:N/C:P/I:N/A:N

Weaknesses

CWE-22

Affected products

VendorProductAffected versions
geintelligent_platforms_proficy_hmi/scada_cimplicity4.01
geintelligent_platforms_proficy_hmi/scada_cimplicity7.5
geintelligent_platforms_proficy_hmi/scada_cimplicity8.0
geintelligent_platforms_proficy_process_systems_with_cimplicityall versions
geintelligent_platforms_proficy_process_systemsall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2013-0653