GE Communicator¶à¸ö°²È«·ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-05-08

·ì϶±àºÅºÍ¼¶±ð



CVE±àºÅ£ºCVE-2019-6564£¬Î£ÏÕ¼¶±ð£º¸ß¼¶£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.8£¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-6546£¬Î£ÏÕ¼¶±ð£º¸ß¼¶£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.8£¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-6548£¬Î£ÏÕ¼¶±ð£º¸ß¼¶£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.1£¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-6544£¬Î£ÏÕ¼¶±ð£ºÖм¶£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º5.6£¬¹Ù·½Î´ÆÀ¶¨

CVE±àºÅ£ºCVE-2019-6566£¬Î£ÏÕ¼¶±ð£º¸ß¼¶£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.3£¬¹Ù·½Î´ÆÀ¶¨



Ó°Ïì°æ±¾¼°²úÆ·



ËùÓеÍÓÚ4.0.517°æ±¾µÄÈçÏÂCommunicator×é¼þ£º


Communicator Installer
Communicator Application
Communicator PostGreSQL
Communicator MeterManager

Communicator WISE Uninstaller



·ì϶¸ÅÊö



GE CommunicatorÊÇÃÀ¹úͨÓÃµçÆø£¨GE£©¹«Ë¾µÄÒ»¿îÓÃÓÚ¼ÆÁ¿É豸µÄ±à³ÌºÍ¼à²âµÄÀûÓ÷¨Ê½¡£¸Ã¹¤¾ß±»ÊÀ½ç¸÷µØµÄµçÁ¦¹«Ë¾£¬´óÐÍÔì×÷ÉÌºÍÆäËûÀàÐ͵Ä×é֯ʹÓá£ICS-CERTй©£¬GE Communicator´æÔÚÒÔÏ·ì϶£º


CVE-2019-6564

¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úÆ·µÄ´úÂ뿪·¢¹ý³ÌÖдæÔÚÉè¼Æ»òʵÏÖ²»µ±µÄÎÊÌâ¡£·ÇÖÎÀíÓû§¿ÉÄܻὫ¶ñÒâÎļþ·ÅÔÚ×°Ö÷¨Ê½ÎļþĿ¼ÖУ¬Õâ¿ÉÄÜÔÊÐí¹¥»÷ÕßÔÚ×°ÖûòÉý¼¶ÆÚ¼ä»ñµÃϵͳµÄÖÎÀíȨÏÞ¡£


CVE-2019-6546

¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úÆ·µÄ´úÂ뿪·¢¹ý³ÌÖдæÔÚÉè¼Æ»òʵÏÖ²»µ±µÄÎÊÌâ¡£¹¥»÷Õß¿ÉÄܽ«¶ñÒâÎļþ·ÅÔÚ·¨Ê½µÄ¹¤×÷Ŀ¼ÖУ¬Õâ¿ÉÄÜÔÊÐí¹¥»÷Õ߰ѳÖÓײ¿¼þºÍUIÔªËØ¡£


CVE-2019-6548

¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úÆ·Öв»×ãÓÐЧµÄÐÅÀµÖÎÀí»úÔì¡£´æÔÚÓµÓÐÓ²±àÂëÆ¾Ö¤µÄÁ½¸öºóÃÅÕÊ»§£¬ÕâÄܹ»ÔÊÐí½ÚÔìÊý¾Ý¿â¡£ÈôÊÇ×îÖÕÓû§Ê¹ÓÃWindowsĬÈÏ·À»ðǽÉèÖã¬Ôò¹¥»÷ÕßÎÞ·¨½Ó¼û´Ë·þÎñ¡£


CVE-2019-6544

¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδÕýÈ·ÏÞ¶ÈÀ´×ÔδÊÚȨ½ÇÉ«µÄ×ÊÔ´½Ó¼û¡£Ê¹ÓÃÏµÍ³ÌØÈ¨ÔËÐеķþÎñ¿ÉÄÜÔÊÐí·ÇÌØÈ¨Óû§Ö´ÐÐijЩÖÎÀí²Ù×÷£¬Õâ¿ÉÄÜÔÊÐíÖ´ÐÐÓµÓÐϵͳÖÎÀíԱȨÏ޵ĵ÷¶È¾ç±¾¡£ÈôÊÇ×îÖÕÓû§Ê¹ÓÃWindowsĬÈÏ·À»ðǽÉèÖã¬Ôò¹¥»÷ÕßÎÞ·¨½Ó¼û´Ë·þÎñ¡£


CVE-2019-6566

¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδÕýÈ·ÏÞ¶ÈÀ´×ÔδÊÚȨ½ÇÉ«µÄ×ÊÔ´½Ó¼û¡£·ÇÖÎÀíÓû§¿ÉÄÜ»áʹÓöñÒâ°æ±¾´úÌæÐ¶ÔØ·¨Ê½£¬Õâ¿ÉÄÜÔÊÐí¹¥»÷Õß»ñµÃϵͳµÄÖÎÀíԱȨÏÞ¡£



·ì϶ÑéÖ¤



ÔÝÎÞPOC/EXP¡£



½¨¸´½¨Òé



Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£ºhttps://www.gegridsolutions.com/app/ViewFiles.aspx?prod=EPM9700&type=7¡£



²Î¿¼Á´½Ó



https://ics-cert.us-cert.gov/advisories/ICSA-19-122-02