CVE Vulnerabilities

CVE-2020-14496

Published: May 19, 2022 | Modified: Jun 07, 2022
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Successful exploitation of this vulnerability for multiple Mitsubishi Electric Factory Automation Engineering Software Products of various versions could allow an attacker to escalate privilege and execute malicious programs, which could cause a denial-of-service condition, and allow information to be disclosed, tampered with, and/or destroyed.

Affected Software

Name Vendor Start Version End Version
Cpu_module_logging_configuration_tool Mitsubishielectric * 1.106k (excluding)
Cw_configurator Mitsubishielectric * 1.011m (excluding)
Data_transfer Mitsubishielectric * 3.41t (excluding)
Em_configurator Mitsubishielectric * 1.015r (excluding)
Ezsocket Mitsubishielectric * 4.6 (excluding)
Fr_configurator2 Mitsubishielectric * 1.23z (excluding)
Gt_designer3 Mitsubishielectric * 1.236w (excluding)
Gt_softgot1000 Mitsubishielectric * 3.245f (excluding)
Gt_softgot2000 Mitsubishielectric * 1.236w (excluding)
Gx_logviewer Mitsubishielectric * 1.106k (excluding)
Gx_works2 Mitsubishielectric * 1.595v (excluding)
Gx_works3 Mitsubishielectric * 1.065t (excluding)
M_commdtm-hart Mitsubishielectric * 1.01b (excluding)
M_commdtm-io-link Mitsubishielectric * 1.04e (excluding)
Melfa-works Mitsubishielectric * 4.4 (excluding)
Melsoft_fielddeviceconfigurator Mitsubishielectric * 1.04e (excluding)
Melsoft_navigator Mitsubishielectric * 2.70y (excluding)
Mh11_settingtool_version2 Mitsubishielectric * 2.003d (excluding)
Motorizer Mitsubishielectric * 1.010l (excluding)
Mr_configurator2 Mitsubishielectric * 1.106l (excluding)
Mt_works2 Mitsubishielectric * 1.160s (excluding)
Mx_component Mitsubishielectric * 4.20w (excluding)
Network_interface_board_cc-link_ver.2_utility Mitsubishielectric * 1.24a (excluding)
Network_interface_board_cc_ie_control_utility Mitsubishielectric * 1.30g (excluding)
Network_interface_board_cc_ie_field_utility Mitsubishielectric * 1.17t (excluding)
Network_interface_board_mneth_utility Mitsubishielectric * 35m (excluding)
Px_developer Mitsubishielectric * 1.53f (excluding)
Rt_toolbox2 Mitsubishielectric * 3.73b (excluding)
Rt_toolbox3 Mitsubishielectric * 1.80j (excluding)

References