GE Communicator¶à¸ö°²È«·ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-05-08

·ì϶±àºÅºÍ¼¶±ð



CVE±àºÅ£ºCVE-2019-6564£¬ £¬ £¬£¬£¬ £¬ £¬£¬Î£ÏÕ¼¶±ð£º¸ß¼¶£¬ £¬ £¬£¬£¬ £¬ £¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.8£¬ £¬ £¬£¬£¬ £¬ £¬£¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-6546£¬ £¬ £¬£¬£¬ £¬ £¬£¬Î£ÏÕ¼¶±ð£º¸ß¼¶£¬ £¬ £¬£¬£¬ £¬ £¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.8£¬ £¬ £¬£¬£¬ £¬ £¬£¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-6548£¬ £¬ £¬£¬£¬ £¬ £¬£¬Î£ÏÕ¼¶±ð£º¸ß¼¶£¬ £¬ £¬£¬£¬ £¬ £¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.1£¬ £¬ £¬£¬£¬ £¬ £¬£¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-6544£¬ £¬ £¬£¬£¬ £¬ £¬£¬Î£ÏÕ¼¶±ð£ºÖм¶£¬ £¬ £¬£¬£¬ £¬ £¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º5.6£¬ £¬ £¬£¬£¬ £¬ £¬£¬¹Ù·½Î´ÆÀ¶¨

CVE±àºÅ£ºCVE-2019-6566£¬ £¬ £¬£¬£¬ £¬ £¬£¬Î£ÏÕ¼¶±ð£º¸ß¼¶£¬ £¬ £¬£¬£¬ £¬ £¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º7.3£¬ £¬ £¬£¬£¬ £¬ £¬£¬¹Ù·½Î´ÆÀ¶¨



Ó°Ïì°æ±¾¼°²úÆ·



ËùÓеÍÓÚ4.0.517°æ±¾µÄÈçÏÂCommunicator×é¼þ£º


Communicator Installer
Communicator Application
Communicator PostGreSQL
Communicator MeterManager

Communicator WISE Uninstaller



·ì϶¸ÅÊö



GE CommunicatorÊÇÃÀ¹úͨÓÃµçÆø£¨GE£©¹«Ë¾µÄÒ»¿îÓÃÓÚ¼ÆÁ¿É豸µÄ±à³ÌºÍ¼à²âµÄÀûÓ÷¨Ê½¡£¡£¡£¡£¡£¡£¡£¸Ã¹¤¾ß±»ÊÀ½ç¸÷µØµÄµçÁ¦¹«Ë¾£¬ £¬ £¬£¬£¬ £¬ £¬£¬´óÐÍÔì×÷ÉÌºÍÆäËûÀàÐ͵Ä×é֯ʹÓᣡ£¡£¡£¡£¡£¡£ICS-CERTй©£¬ £¬ £¬£¬£¬ £¬ £¬£¬GE Communicator´æÔÚÒÔÏ·ì϶£º


CVE-2019-6564

¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úÆ·µÄ´úÂ뿪·¢¹ý³ÌÖдæÔÚÉè¼Æ»òʵÏÖ²»µ±µÄÎÊÌâ¡£¡£¡£¡£¡£¡£¡£·ÇÖÎÀíÓû§¿ÉÄܻὫ¶ñÒâÎļþ·ÅÔÚ×°Ö÷¨Ê½ÎļþĿ¼ÖУ¬ £¬ £¬£¬£¬ £¬ £¬£¬Õâ¿ÉÄÜÔÊÐí¹¥»÷ÕßÔÚ×°ÖûòÉý¼¶ÆÚ¼ä»ñµÃϵͳµÄÖÎÀíȨÏÞ¡£¡£¡£¡£¡£¡£¡£


CVE-2019-6546

¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úÆ·µÄ´úÂ뿪·¢¹ý³ÌÖдæÔÚÉè¼Æ»òʵÏÖ²»µ±µÄÎÊÌâ¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÄܽ«¶ñÒâÎļþ·ÅÔÚ·¨Ê½µÄ¹¤×÷Ŀ¼ÖУ¬ £¬ £¬£¬£¬ £¬ £¬£¬Õâ¿ÉÄÜÔÊÐí¹¥»÷Õ߰ѳÖÓײ¿¼þºÍUIÔªËØ¡£¡£¡£¡£¡£¡£¡£


CVE-2019-6548

¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úÆ·Öв»×ãÓÐЧµÄÐÅÀµÖÎÀí»úÔì¡£¡£¡£¡£¡£¡£¡£´æÔÚÓµÓÐÓ²±àÂëÆ¾Ö¤µÄÁ½¸öºóÃÅÕÊ»§£¬ £¬ £¬£¬£¬ £¬ £¬£¬ÕâÄܹ»ÔÊÐí½ÚÔìÊý¾Ý¿â¡£¡£¡£¡£¡£¡£¡£ÈôÊÇ×îÖÕÓû§Ê¹ÓÃWindowsĬÈÏ·À»ðǽÉèÖ㬠£¬ £¬£¬£¬ £¬ £¬£¬Ôò¹¥»÷ÕßÎÞ·¨½Ó¼û´Ë·þÎñ¡£¡£¡£¡£¡£¡£¡£


CVE-2019-6544

¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδÕýÈ·ÏÞ¶ÈÀ´×ÔδÊÚȨ½ÇÉ«µÄ×ÊÔ´½Ó¼û¡£¡£¡£¡£¡£¡£¡£Ê¹ÓÃÏµÍ³ÌØÈ¨ÔËÐеķþÎñ¿ÉÄÜÔÊÐí·ÇÌØÈ¨Óû§Ö´ÐÐijЩÖÎÀí²Ù×÷£¬ £¬ £¬£¬£¬ £¬ £¬£¬Õâ¿ÉÄÜÔÊÐíÖ´ÐÐÓµÓÐϵͳÖÎÀíԱȨÏ޵ĵ÷¶È¾ç±¾¡£¡£¡£¡£¡£¡£¡£ÈôÊÇ×îÖÕÓû§Ê¹ÓÃWindowsĬÈÏ·À»ðǽÉèÖ㬠£¬ £¬£¬£¬ £¬ £¬£¬Ôò¹¥»÷ÕßÎÞ·¨½Ó¼û´Ë·þÎñ¡£¡£¡£¡£¡£¡£¡£


CVE-2019-6566

¸Ã·ì϶ԴÓÚÍøÂçϵͳ»ò²úƷδÕýÈ·ÏÞ¶ÈÀ´×ÔδÊÚȨ½ÇÉ«µÄ×ÊÔ´½Ó¼û¡£¡£¡£¡£¡£¡£¡£·ÇÖÎÀíÓû§¿ÉÄÜ»áʹÓöñÒâ°æ±¾´úÌæÐ¶ÔØ·¨Ê½£¬ £¬ £¬£¬£¬ £¬ £¬£¬Õâ¿ÉÄÜÔÊÐí¹¥»÷Õß»ñµÃϵͳµÄÖÎÀíԱȨÏÞ¡£¡£¡£¡£¡£¡£¡£



·ì϶ÑéÖ¤



ÔÝÎÞPOC/EXP¡£¡£¡£¡£¡£¡£¡£



½¨¸´½¨Òé



Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£ºhttps://www.gegridsolutions.com/app/ViewFiles.aspx?prod=EPM9700&type=7¡£¡£¡£¡£¡£¡£¡£



²Î¿¼Á´½Ó



https://ics-cert.us-cert.gov/advisories/ICSA-19-122-02