Medium severity6.6NVD Advisory· Published Jul 19, 2023· Updated Jun 17, 2026
CVE-2023-3463
CVE-2023-3463
Description
All versions of GE Digital CIMPLICITY that are not adhering to SDG guidance and accepting documents from untrusted sources are vulnerable to memory corruption issues due to insufficient input validation, including issues such as out-of-bounds reads and writes, use-after-free, stack-based buffer overflows, uninitialized pointers, and a heap-based buffer overflow. Successful exploitation could allow an attacker to execute arbitrary code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:ge:cimplicity:*:*:*:*:*:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: All
Patches
Vulnerability mechanics
References
1- www.cisa.gov/news-events/ics-advisories/icsa-23-199-06nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.