CVE-2023-5274
CVE-2023-5274
Vexday Risk Score
8Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 2.5EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Lifecycle
21 Nov 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Improper Input Validation vulnerability in simulation function of GX Works2 allows an attacker to cause a denial-of-service (DoS) condition on the function by sending specially crafted packets. However, the attacker would need to send the packets from within the same personal computer where the function is running.
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L
Affected products
Mitsubishi Electric Corporation · GX Works2Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →