Use of Hard-coded Password vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U and GT Designer3 Version1 (GOT2000) versions from 1.122C to 1.290C allows an unauthenticated attacker to disclose sensitive information. As a result, unauthenticated users may view programs and project files or execute programs illegally.
References
Link | Resource |
---|---|
https://jvn.jp/vu/JVNVU97244961/index.html | Third Party Advisory VDB Entry |
https://www.cisa.gov/uscert/ics/advisories/icsa-22-333-05 | |
https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2022-015_en.pdf | Mitigation Vendor Advisory |
https://jvn.jp/vu/JVNVU97244961/index.html | Third Party Advisory VDB Entry |
https://www.cisa.gov/uscert/ics/advisories/icsa-22-333-05 | |
https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2022-015_en.pdf | Mitigation Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 06:59
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.6 |
References | () https://jvn.jp/vu/JVNVU97244961/index.html - Third Party Advisory, VDB Entry | |
References | () https://www.cisa.gov/uscert/ics/advisories/icsa-22-333-05 - | |
References | () https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2022-015_en.pdf - Mitigation, Vendor Advisory |
31 May 2023, 09:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Summary | Use of Hard-coded Password vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U and GT Designer3 Version1 (GOT2000) versions from 1.122C to 1.290C allows an unauthenticated attacker to disclose sensitive information. As a result, unauthenticated users may view programs and project files or execute programs illegally. |
28 Nov 2022, 21:03
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
CPE | cpe:2.3:a:mitsubishielectric:gx_works3:*:*:*:*:*:*:*:* | |
CWE | CWE-798 | |
References | (MISC) https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2022-015_en.pdf - Mitigation, Vendor Advisory | |
References | (MISC) https://jvn.jp/vu/JVNVU97244961/index.html - Third Party Advisory, VDB Entry |
25 Nov 2022, 13:59
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-11-25 00:15
Updated : 2024-11-21 06:59
NVD link : CVE-2022-29825
Mitre link : CVE-2022-29825
CVE.ORG link : CVE-2022-29825
JSON object : View
Products Affected
mitsubishielectric
- gx_works3