PT-2025-22085 · Ge · Ge Vernova Workstationst

Published

2025-05-19

·

Updated

2025-05-20

·

CVE-2025-3223

CVSS v3.1

5.9

Medium

VectorAV:A/AC:H/PR:L/UI:N/S:U/C:L/I:H/A:L
Name of the Vulnerable Software and Affected Versions: GE Vernova WorkstationST versions V07.10.10C and earlier
Description: The issue is related to an Improper Limitation of a Pathname to a Restricted Directory, also known as a 'Path Traversal' vulnerability, in the EGD Configuration Server modules of GE Vernova WorkstationST on Windows. This vulnerability allows Path Traversal.
Recommendations: For GE Vernova WorkstationST versions V07.10.10C and earlier, consider restricting access to the EGD Configuration Server modules until a patch is available. As a temporary workaround, avoid using the vulnerable EGD Configuration Server modules in GE Vernova WorkstationST until the issue is resolved.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2025-3223

Affected Products

Ge Vernova Workstationst