Brief

Here is the summary:

Summary:

The Mitsubishi Electric View CSAF report reveals a set of vulnerabilities in multiple FA Engineering Software Products, affecting various versions. The vulnerabilities, identified as CVE-2023-51776, CVE-2024-22102, CVE-2024-22103, CVE-2024-22104, CVE-2024-22105, CVE-2024-22106, CVE-2024-25086, CVE-2024-25087, CVE-2024-25088, and CVE-2024-26314, have been assigned to various CWE-269, CWE-400, and CWE-787 categories.

Exploiting these vulnerabilities can allow a local attacker to gain Windows system privileges, execute arbitrary commands, or cause a Windows blue screen error resulting in a denial-of-service condition. The CVSS v3.1 base scores range from 4.1 to 6.0, with all vulnerabilities having a high attack complexity. Mitsubishi Electric recommends users take mitigation measures such as restricting physical access to the computer, installing antivirus software, and not opening untrusted files or clicking untrusted links. The report also provides additional mitigation guidance and recommended practices. No known public exploitation specifically targeting these vulnerabilities has been reported.

View CSAF 1. EXECUTIVE SUMMARY CVSS v3 6.0 ATTENTION: Low attack complexity Vendor: Mitsubishi Electric Equipment: Multiple FA Engineering Software Products Vulnerabilities: Improper Privilege Management, Uncontrolled Resource Consumption, Out-of-bounds Write, Improper Privilege Management 2. RISK EVALUATION Successful exploitation of these vulnerabilities may allow a local attacker to cause a Windows blue screen error that results

This content is restricted.

Highlights content goes here...

View CSAF 1. EXECUTIVE SUMMARY CVSS v3 6.0 ATTENTION: Low attack complexity Vendor: Mitsubishi Electric Equipment: Multiple FA Engineering Software Products Vulnerabilities: Improper Privilege Management, Uncontrolled Resource Consumption, Out-of-bounds Write, Improper Privilege Management 2. RISK EVALUATION Successful exploitation of these vulnerabilities may allow a local attacker to cause a Windows blue screen error that results

This content is restricted.

Cybersecurity and Infrastructure Security Agency

Quick Insight
RADA.AI
RADA.AI
Hello! I'm RADA.AI - Regulatory Analysis and Decision Assistance. Your Intelligent guide for compliance and decision-making. How can i assist you today?
Suggested

Form successfully submitted. One of our GRI rep will contact you shortly

Thanking You!

Enter your Email

Enter your registered username/email id.

Enter your Email

Enter your email id below to signup.
Individual Plan
$125 / month OR $1250 / year
Features
Best for: Researchers, Legal professionals, Academics
Enterprise Plan
Contact for Pricing
Features
Best for: Law Firms, Corporations, Government Bodies