Electric\'s proficy
This hub aggregates every CVE we track for Electric\'s proficy, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.
5
CVEs tracked
0
Critical
0
High
0
In CISA KEV
Severity distribution
MEDIUM4LOW1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-072026-06
Latest CVEs
The 5 most recently published vulnerabilities affecting Electric\'s proficy.
- CVE-2022-2793Emerson Electric's Proficy Machine Edition Version 9.00 and prior is vulenrable to CWE-353 Missing Support for Integrity Check, and has no authentication or authorization of data packets after esta...5.9
- CVE-2022-2789Emerson Electric's Proficy Machine Edition Version 9.00 and prior is vulnerable to CWE-345 Insufficient Verification of Data Authenticity, and can display logic that is different than the compiled ...4.7
- CVE-2022-2790Emerson Electric's Proficy Machine Edition Version 9.00 and prior is vulenrable to CWE-347 Improper Verification of Cryptographic Signature, and does not properly verify compiled logic (PDT files) ...5.9
- CVE-2022-2792Emerson Electric's Proficy Machine Edition Version 9.00 and prior is vulenrable to CWE-284 Improper Access Control, and stores project data in a directory with improper access control lists.6.6
- CVE-2022-2788Emerson Electric's Proficy Machine Edition Version 9.80 and prior is vulnerable to CWE-29 Path Traversal: '\..\Filename', also known as a ZipSlip attack, through an upload procedure which enables a...3.9
Product normalization is registry-driven with AI assist and human review. How it works