Skip to main content

Vendor/product archive

iconics / genesis64 CVEs

Beta · best-effort

19 CVEs tagged to iconics / genesis645 Critical, 10 High, 3 Medium, 1 Low, 0 Unrated.

CVE-2024-7587

Published Oct 22, 2024

Incorrect Default Permissions vulnerability in GenBroker32, which is included in the installers for Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric I…

CVSS 7.8 · High
evidence mentions
3
Buzz score
23.9
Vendor/product tagsBeta · best-effort

CVE-2022-40264

Published Dec 14, 2022

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ICONICS/Mitsubishi Electric GENESIS64 versions 10.96 to 10.97.2 allows an unauthent…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-29834

Published Jul 20, 2022

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Mitsubishi Electric GENESIS64 versions 10.97 to 10.97.1, Mitsubishi Electric Iconic…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-27041

Published Jun 25, 2021

A maliciously crafted DWG file can be used to write beyond the allocated buffer while parsing DWG files. This vulnerability can be exploited to execute arbitrary code

CVSS 7.8 · High

CVE-2021-27040

Published Jun 25, 2021

A maliciously crafted DWG file can be forced to read beyond allocated boundaries when parsing the DWG file. This vulnerability can be exploited to execute arbitrary code.

CVSS 3.3 · Low

CVE-2020-12015

Published Jul 16, 2020

A specially crafted communication packet sent to the affected systems could cause a denial-of-service condition due to improper deserialization. This issue affects: Mitsubishi Ele…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9

CVE-2020-12013

Published Jul 16, 2020

A specially crafted WCF client that interfaces to the may allow the execution of certain arbitrary SQL commands remotely. This affects: Mitsubishi Electric MC Works64 Version 4.02…

CVSS 9.1 · Critical

CVE-2020-12007

Published Jul 16, 2020

A specially crafted communication packet sent to the affected devices could allow remote code execution and a denial-of-service condition due to a deserialization vulnerability. T…

CVSS 9.8 · Critical

CVE-2020-12009

Published Jul 16, 2020

A specially crafted communication packet sent to the affected device could cause a denial-of-service condition due to a deserialization vulnerability. This affects: Mitsubishi Ele…

CVSS 7.5 · High

CVE-2020-12011

Published Jul 16, 2020

A specially crafted communication packet sent to the affected systems could cause a denial-of-service condition or allow remote code execution. This issue affects: Mitsubishi Elec…

CVSS 9.8 · Critical
Showing 1-19 of 19 CVEsPage 1 of 1