Description
Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.095Z and Motion Control Setting(GX Works3 related software) versions from 1.000A and later allows a remote unauthenticated attacker to disclose or tamper with sensitive information. As a result, unauthenticated attackers may obtain information about project files illegally.
Related CPE's
a
mitsubishielectric
gx_works3
References
https://jvn.jp/vu/JVNVU97244961/index.html
https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2022-015_en.pdf
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
9.1 · Critical
CVSS V3.1
CVSS V3.0
CVSS V2.0
Information
Source identifier
Vulnerability status
Modified
Published
2022-11-25T00:15:10.367
2 years agoLast modified
2023-06-29T08:15:10.290
2 years ago