CVE-2018-8867: Ge Pacsystems CPU320 Firmware
High severity, CVSS 7.5. EPSS: 3.4% chance of exploitation in the next 30 days.
In GE PACSystems RX3i CPE305/310 version 9.20 and prior, RX3i CPE330 version 9.21 and prior, RX3i CPE 400 version 9.30 and prior, PACSystems RSTi-EP CPE 100 all versions, and PACSystems CPU320/CRU320 RXi all versions, the device does not properly validate input, which could allow a remote attacker to send specially crafted packets causing the device to become unavailable.
Affected products
- Ge Pacsystems CPU320 Firmware: affected versions not specified
- Ge Pacsystems CRU320 Firmware: affected versions not specified
- Ge Pacsystems Rsti-Ep CPE 100 Firmware: affected versions not specified
- Ge Pacsystems RX3I CPE305 Firmware: up to and including 9.20
- Ge Pacsystems RX3I CPE310 Firmware: up to and including 9.20
- Ge Pacsystems Rxi Firmware: affected versions not specified
- Ge RX3I CPE330 Firmware: up to and including 9.21
- Ge RX3I CPE 400 Firmware: up to and including 9.30
Published 2018-05-18. Last modified 2026-06-17.