Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.095Z and Motion Control Setting(GX Works3 related software) versions from 1.000A and later allows a remote unauthenticated attacker to disclose or tamper with sensitive information. As a result, unauthenticated attackers may obtain information about project files illegally.
The use of a hard-coded cryptographic key significantly increases the possibility that encrypted data may be recovered.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gx_works3 | Mitsubishielectric | 1.000a (including) | 1.011m (including) |
Gx_works3 | Mitsubishielectric | 1.015r (including) | 1.086q (including) |
Gx_works3 | Mitsubishielectric | 1.087r (including) | * |