Out-of-bounds Read Vulnerability in GENESIS64 and MC Works64 by Mitsubishi Electric
CVE-2022-33319

9.1CRITICAL

Key Information:

Vendor

Iconics

Vendor
CVE Published:
20 July 2022

What is CVE-2022-33319?

An out-of-bounds read vulnerability exists in ICONICS GENESIS64 and Mitsubishi Electric MC Works64, allowing a remote unauthenticated attacker to send specially crafted packets. This could potentially disclose sensitive information from memory or lead to a Denial of Service (DoS) condition, impacting the stability and confidentiality of the affected systems.

Affected Version(s)

ICONICS GENESIS64; Mitsubishi Electric MC Works64 ICONICS GENESIS64 versions 10.97.1 and prior

ICONICS GENESIS64; Mitsubishi Electric MC Works64 Mitsubishi Electric MC Works64 versions 4.04E (10.95.210.01) and prior

References

CVSS V3.1

Score:
9.1
Severity:
CRITICAL
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.