CVE-2022-25164
25.11.2022, 00:15
Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.095Z and Mitsubishi Electric MX OPC UA Module Configurator-R versions 1.08J and prior allows a remote unauthenticated attacker to disclose sensitive information. As a result, unauthenticated attackers can gain unauthorized access to the MELSEC CPU module and the MELSEC OPC UA server module.Enginsight
Vendor | Product | Version |
---|---|---|
mitsubishielectric | gx_works3 | 1.000a ≤ 𝑥 ≤ 1.011m |
mitsubishielectric | gx_works3 | 1.015r ≤ 𝑥 ≤ 1.086q |
mitsubishielectric | gx_works3 | 1.087r ≤ |
mitsubishielectric | mx_opc_ua_module_configurator-r | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References