CVE-2018-19003: Ge EX2100E Firmware

High severity, CVSS 7.5. EPSS: 2.6% chance of exploitation in the next 30 days.

GE Mark VIe, EX2100e, EX2100e_Reg, and LS2100e Versions 03.03.28C to 05.02.04C, EX2100e All versions prior to v04.09.00C, EX2100e_Reg All versions prior to v04.09.00C, and LS2100e All versions prior to v04.09.00C The affected versions of the application have a path traversal vulnerability that fails to restrict the ability of an attacker to gain access to restricted information.

Affected products

  • Ge EX2100E Firmware: before 04.09.00c (fixed in 04.09.00c); from 03.03.28c, up to and including 05.02.04c
  • Ge LS2100E Firmware: before 04.09.00c (fixed in 04.09.00c); from 03.03.28c, up to and including 05.02.04c
  • Ge Mark Vle Firmware: from 03.03.28c, up to and including 05.02.04c

Published 2018-12-14. Last modified 2026-06-17.