CVE Feed

    Dashboard / CVE / CVE-2022-24118

    CVE-2022-24118

    Certain General Electric Renewable Energy products allow attackers to use a code to trigger a reboot into the factory default configuration. This affects iNET and iNET II before 8.3.0, SD before 6.4.7, TD220X before 2.0.16, and TD220MAX before 1.2.6.

    Published:Dec 26, 2022
    Last Modified:Apr 12, 2025
    EPS:Dec 26, 2022
    EPSS Score:0.00045
    CVSS Score:9.1

    Affected Products

    Vendor
    Ge
    Product
    Inet 900
    Vendor
    Ge
    Product
    Inet 900 Firmware
    Vendor
    Ge
    Product
    Inet Ii 900
    Vendor
    Ge
    Product
    Inet Ii 900 Firmware
    Vendor
    Ge
    Product
    Sd1
    Vendor
    Ge
    Product
    Sd1 Firmware
    Vendor
    Ge
    Product
    Sd2
    Vendor
    Ge
    Product
    Sd2 Firmware
    Vendor
    Ge
    Product
    Sd4
    Vendor
    Ge
    Product
    Sd4 Firmware
    Vendor
    Ge
    Product
    Sd9
    Vendor
    Ge
    Product
    Sd9 Firmware
    Vendor
    Ge
    Product
    Td220max
    Vendor
    Ge
    Product
    Td220max Firmware
    Vendor
    Ge
    Product
    Td220x
    Vendor
    Ge
    Product
    Td220x Firmware

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High