Description


Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.095Z and Mitsubishi Electric MX OPC UA Module Configurator-R versions 1.08J and prior allows a remote unauthenticated attacker to disclose sensitive information. As a result, unauthenticated attackers can gain unauthorized access to the MELSEC CPU module and the MELSEC OPC UA server module.

Related CPE's


a

mitsubishielectric

gx_works3

3

Weaknesses



CWE-312


CWE-312

CVSS impact metrics


CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N

8.6 · High

Information


Source identifier

[email protected]

Vulnerability status

Modified

Published

2022-11-24T23:15:09.907Z

3 years ago

Last modified

2024-11-21T05:51:43.907Z

1 year ago