Memory Corruption in Mitsubishi E-Designer Software
CVE-2017-9634

9.8CRITICAL

What is CVE-2017-9634?

The Mitsubishi E-Designer software, specifically Version 7.52 Build 344, contains critical code sections that can be exploited to overwrite arbitrary memory locations. This vulnerability poses significant risks, including arbitrary code execution, which allows attackers to gain control over the affected system. Additionally, it can compromise data integrity and lead to denial of service events, resulting in system crashes and unavailability. Organizations using this software should take immediate steps to secure their systems against potential exploits.

Affected Version(s)

E-Designer Version 7.52 Build 344.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.