Vulnerabilities > Iconics > Facility Analytix > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-07-16 CVE-2020-12015 Deserialization of Untrusted Data vulnerability in multiple products
A specially crafted communication packet sent to the affected systems could cause a denial-of-service condition due to improper deserialization.
network
low complexity
mitsubishielectric iconics CWE-502
5.0
2020-07-16 CVE-2020-12013 SQL Injection vulnerability in multiple products
A specially crafted WCF client that interfaces to the may allow the execution of certain arbitrary SQL commands remotely.
network
low complexity
mitsubishielectric iconics CWE-89
6.4
2020-07-16 CVE-2020-12009 Deserialization of Untrusted Data vulnerability in multiple products
A specially crafted communication packet sent to the affected device could cause a denial-of-service condition due to a deserialization vulnerability.
network
low complexity
mitsubishielectric iconics CWE-502
5.0