CVE-2024-8300

Dead Code vulnerability in ICONICS GENESIS64 Version 10.97.2, 10.97.2 CFR1, 10.97.2 CRF2 and 10.97.3 and Mitsubishi Electric GENESIS64 Version 10.97.2, 10.97.2 CFR1, 10.97.2 CRF2 and 10.97.3 allows a local authenticated attacker to execute a malicious code by tampering with a specially crafted DLL. This could lead to disclose, tamper with, destroy, or delete information in the affected products, or cause a denial of service (DoS) condition on the products.
Configurations

No configuration.

History

06 Dec 2024, 06:15

Type Values Removed Values Added
References
  • () https://www.cisa.gov/news-events/ics-advisories/icsa-24-338-04 -
Summary
  • (es) La vulnerabilidad de código muerto en ICONICS GENESIS64 versión 10.97.2, 10.97.2 CFR1, 10.97.2 CRF2 y 10.97.3 y Mitsubishi Electric GENESIS64 versión 10.97.2, 10.97.2 CFR1, 10.97.2 CRF2 y 10.97.3 permite que un atacante local autenticado ejecute un código malicioso alterando una DLL especialmente manipulada. Esto podría llevar a divulgar, alterar, destruir o eliminar información en los productos afectados, o causar una condición de denegación de servicio (DoS) en los productos.

28 Nov 2024, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-28 23:15

Updated : 2024-12-06 06:15


NVD link : CVE-2024-8300

Mitre link : CVE-2024-8300

CVE.ORG link : CVE-2024-8300


JSON object : View

Products Affected

No product.

CWE
CWE-561

Dead Code