Show filters
8 Total Results
Displaying 1-8 of 8
Sort by:
Attacker Value
Unknown

CVE-2013-0652

Disclosure Date: January 27, 2013 (last updated October 05, 2023)
GE Intelligent Platforms Proficy Real-Time Information Portal does not restrict access to methods of an unspecified Java class, which allows remote attackers to obtain a username listing via an RMI call.
0
Attacker Value
Unknown

CVE-2013-0651

Disclosure Date: January 27, 2013 (last updated October 05, 2023)
The Portal installation process in GE Intelligent Platforms Proficy Real-Time Information Portal stores sensitive information under the web root with insufficient access control, which allows remote attackers to read configuration files, and discover data-source credentials, via a direct request.
0
Attacker Value
Unknown

CVE-2012-3010

Disclosure Date: November 01, 2012 (last updated October 05, 2023)
rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attackers to cause a denial of service (memory corruption and service crash) or possibly execute arbitrary code via long input data, a different vulnerability than CVE-2012-3021 and CVE-2012-3026.
0
Attacker Value
Unknown

CVE-2012-3021

Disclosure Date: November 01, 2012 (last updated October 05, 2023)
rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attackers to cause a denial of service (memory corruption and service crash) or possibly execute arbitrary code via long input data, a different vulnerability than CVE-2012-3010 and CVE-2012-3026.
0
Attacker Value
Unknown

CVE-2012-3026

Disclosure Date: November 01, 2012 (last updated October 05, 2023)
rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attackers to cause a denial of service (memory corruption and service crash) or possibly execute arbitrary code via long input data, a different vulnerability than CVE-2012-3010 and CVE-2012-3021.
0
Attacker Value
Unknown

CVE-2012-0232

Disclosure Date: March 15, 2012 (last updated October 04, 2023)
Directory traversal vulnerability in rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6, 3.0, 3.0 SP1, and 3.5 allows remote attackers to modify the configuration via crafted strings.
0
Attacker Value
Unknown

CVE-2008-0174

Disclosure Date: January 29, 2008 (last updated February 15, 2024)
GE Fanuc Proficy Real-Time Information Portal 2.6 and earlier uses HTTP Basic Authentication, which transmits usernames and passwords in base64-encoded cleartext and allows remote attackers to steal the passwords and gain privileges.
Attacker Value
Unknown

CVE-2008-0175

Disclosure Date: January 29, 2008 (last updated October 04, 2023)
Unrestricted file upload vulnerability in GE Fanuc Proficy Real-Time Information Portal 2.6 and earlier allows remote attackers to execute arbitrary code by uploading a file with an executable extension to the main virtual directory.
0