- What is the severity of CVE-2022-2002?
- CVE-2022-2002 has been scored as a high severity vulnerability.
- How to fix CVE-2022-2002?
- To fix CVE-2022-2002: GE recommends users refer to the CIMPLICITY Secure Deployment Guide https://digitalsupport.ge.com/communities/en_US/Documentation/CIMPLICITY-Secure-Deployment-Guide2 (login required) for mitigations to the reported vulnerabilities. Specific sections to reference include Section 3.5 Projects and Section 4.2 CimView. For more information about this issue, see the GE Digital Product Security Advisory https://digitalsupport.ge.com/communities/en_US/Article/GE-Digital-Security-Advisory-GED-22-06 (login required). For further questions, users should contact GE https://digitalsupport.ge.com/communities/CC_Contact .
- Is CVE-2022-2002 being actively exploited in the wild?
- As for now, there are no information to confirm that CVE-2022-2002 is being actively exploited. According to its EPSS score, there is a ~0% probability that this vulnerability will be exploited by malicious actors in the next 30 days.
- What software or system is affected by CVE-2022-2002?
- CVE-2022-2002 affects GE CIMPLICITY.