CVE-2019-10972
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/07/2019
Last modified:
02/10/2020
Description
Mitsubishi Electric FR Configurator2, Version 1.16S and prior. This vulnerability can be triggered when an attacker provides the target with a rogue project file (.frc2). Once a user opens the rogue project, CPU exhaustion occurs, which causes the software to quit responding until the application is restarted.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Base Score 2.0
7.10
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:mitsubishielectric:electric_fr_configurator2:*:*:*:*:*:*:*:* | 1.16s (including) |
To consult the complete list of CPE names with products and versions, see this page



