Deserialization Vulnerability in ICONICS GENESIS64 and Mitsubishi Electric MC Works64
CVE-2022-33318
9.8CRITICAL
What is CVE-2022-33318?
The vulnerability allows an unauthenticated remote attacker to execute arbitrary code on the affected systems by sending specially crafted packets to the GENESIS64 server. This could lead to a significant compromise of the system integrity and confidentiality, making it critical for users to apply necessary security updates to the vulnerable products.
Affected Version(s)
ICONICS GENESIS64; Mitsubishi Electric MC Works64 ICONICS GENESIS64 versions 10.97.1 and prior
ICONICS GENESIS64; Mitsubishi Electric MC Works64 Mitsubishi Electric MC Works64 versions 4.04E (10.95.210.01) and prior
