Even if the authentication fails for local service authentication, the requested command could still execute regardless of authentication status.
📦
proficy_historian
Vendor: ge
Actively Exploited
0
CISA KEV List
PoC / Exploits
0
Code Available
Total RCEs
1
Remote Access
Total CVEs
5
Total Indexed
Avg. EPSS
0.61%
Exploit Prob.
Security Vulnerability Index
Page 1 / 1
9.8
CVSS
Severity: CRITICAL
7.5
CVSS
CVE-2022-46660
RCE
An unauthorized user could alter or write files with full control over the path and content of the file.
Severity: HIGH
7.5
CVSS
An unauthorized user could possibly delete any file on the system.
Severity: HIGH
7.5
CVSS
An unauthorized user could be able to read any file on the system, potentially exposing sensitive information.
Severity: HIGH
7.5
CVSS
An unauthorized user with network access and the decryption key could decrypt sensitive data, such as usernames and passwords.
Severity: HIGH