Project Subscriptions
| Vendors | Products |
|---|---|
|
Ge
Subscribe
|
Multilin B30
Subscribe
Multilin B30 Firmware
Subscribe
Multilin B90
Subscribe
Multilin B90 Firmware
Subscribe
Multilin C30
Subscribe
Multilin C30 Firmware
Subscribe
Multilin C60
Subscribe
Multilin C60 Firmware
Subscribe
Multilin C70
Subscribe
Multilin C70 Firmware
Subscribe
Multilin C95
Subscribe
Multilin C95 Firmware
Subscribe
Multilin D30
Subscribe
Multilin D30 Firmware
Subscribe
Multilin D60
Subscribe
Multilin D60 Firmware
Subscribe
Multilin F35
Subscribe
Multilin F35 Firmware
Subscribe
Multilin F60
Subscribe
Multilin F60 Firmware
Subscribe
Multilin G30
Subscribe
Multilin G30 Firmware
Subscribe
Multilin G60
Subscribe
Multilin G60 Firmware
Subscribe
Multilin L30
Subscribe
Multilin L30 Firmware
Subscribe
Multilin L60
Subscribe
Multilin L60 Firmware
Subscribe
Multilin L90
Subscribe
Multilin L90 Firmware
Subscribe
Multilin M60
Subscribe
Multilin M60 Firmware
Subscribe
Multilin N60
Subscribe
Multilin N60 Firmware
Subscribe
Multilin T35
Subscribe
Multilin T35 Firmware
Subscribe
Multilin T60
Subscribe
Multilin T60 Firmware
Subscribe
|
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-14174 | GE UR firmware versions prior to version 8.1x web server task does not properly handle receipt of unsupported HTTP verbs, resulting in the web server becoming temporarily unresponsive after receiving a series of unsupported HTTP requests. When unresponsive, the web server is inaccessible. By itself, this is not particularly significant as the relay remains effective in all other functionality and communication channels. |
Solution
GE strongly recommends users with impacted firmware versions update their UR devices to UR firmware Version 8.10, or greater to resolve these vulnerabilities. GE provides additional mitigations and information about these vulnerabilities in GE Publication Number: GES-2021-004 (login required).
Workaround
GE recommends protecting UR IED by using network defense-in-depth practices. This includes, but is not limited to, placing UR IED inside the control system network security perimeter, and having access controls, monitoring (such as an Intrusion Detection System), and other mitigating technologies in place. GE recommends users refer to the UR Deployment guide for secure configuration of UR IED and system.
Wed, 16 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-04-16T16:40:57.091Z
Reserved: 2021-02-19T00:00:00.000Z
Link: CVE-2021-27420
Updated: 2024-08-03T20:48:17.154Z
Status : Modified
Published: 2022-03-23T20:15:08.310
Modified: 2024-11-21T05:57:57.210
Link: CVE-2021-27420
No data.
OpenCVE Enrichment
No data.
EUVD