CVE-2021-20608

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/12/2021
Last modified:
27/12/2021

Description

Improper Handling of Length Parameter Inconsistency vulnerability in Mitsubishi Electric GX Works2 versions 1.606G and prior allows a remote unauthenticated attacker to cause a DoS condition in GX Works2 by getting GX Works2 to read a tampered program file from a Mitsubishi Electric PLC by sending malicious crafted packets to tamper with the program file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mitsubishielectric:gx_works2:*:*:*:*:*:*:*:* 1.606g (including)