CVE-2018-5473 describes a critical buffer overflow vulnerability in GE D60 Line Distance Relay devices running firmware version 7.11 and prior. This flaw, categorized as CWE-119, allows a remote unauthenticated attacker to execute arbitrary code on the device by exploiting weaknesses in its SSH functions. With a CVSS score of 9.8, the vulnerability presents a high risk of complete compromise (confidentiality, integrity, and availability). While no public exploit code or active exploitation has been observed, and community discussion is minimal, the potential impact necessitates immediate patching for affected systems.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 7.11CPE matchmatch criteria | cpe:2.3:o:ge:d60_line_distance_relay_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.