Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w4gp-qv48-5jc9

Опубликовано: 21 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Inclusion of Functionality from Untrusted Control Sphere vulnerability in ICONICS GENESIS64 versions 10.97.1 and prior and Mitsubishi Electric MC Works64 versions 4.04E (10.95.210.01) and prior allows an unauthenticated attacker to execute an arbitrary malicious code by leading a user to load a monitoring screen file including malicious script codes.

Inclusion of Functionality from Untrusted Control Sphere vulnerability in ICONICS GENESIS64 versions 10.97.1 and prior and Mitsubishi Electric MC Works64 versions 4.04E (10.95.210.01) and prior allows an unauthenticated attacker to execute an arbitrary malicious code by leading a user to load a monitoring screen file including malicious script codes.

EPSS

Процентиль: 23%
0.00079
Низкий

7.8 High

CVSS3

Дефекты

CWE-829

Связанные уязвимости

CVSS3: 7.8
nvd
больше 3 лет назад

Inclusion of Functionality from Untrusted Control Sphere vulnerability in Mitsubishi Electric GENESIS64 versions 10.97 to 10.97.1, Mitsubishi Electric Iconics Digital Solutions GENESIS64 versions 10.97 to 10.97.1, Mitsubishi Electric ICONICS Suite versions 10.97 to 10.97.1, Mitsubishi Electric Iconics Digital Solutions ICONICS Suite versions 10.97 to 10.97.1, and Mitsubishi Electric MC Works64 versions 4.04E and prior allows an unauthenticated attacker to execute an arbitrary malicious code by leading a user to load a monitoring screen file including malicious script codes.

EPSS

Процентиль: 23%
0.00079
Низкий

7.8 High

CVSS3

Дефекты

CWE-829