QID 591052

Date Published: 2022-10-20

QID 591052: Mitsubishi Electric GENESIS64 Multiple Vulnerabilities (ICSA-22-202-04) (2022-008)

AFFECTED PRODUCTS
GENESIS64 : Version 10.97 to 10.97.1

QID Detection Logic (Authenticated)
QID checks for the Vulnerable version using windows registry keys

Successful exploitation of these vulnerabilities by a malicious attacker may result in information disclosure, Denial of Service (DoS) condition or remote code execution.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as Low - 0 severity.
  • Solution

    Customers are advised to refer to Schneider Electric MITIGATIONS section 2022-008 for affected packages and patching details.

    Software Advisories
    Advisory ID Software Component Link
    2022-008 URL Logo www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2022-008_en.pdf
    ICSA-22-202-04 URL Logo www.cisa.gov/uscert/ics/advisories/icsa-22-202-04