Vulnerabilities > Mitsubishielectric > GX Works3 > High

DATE CVE VULNERABILITY TITLE RISK
2022-11-25 CVE-2022-29826 Cleartext Storage of Sensitive Information vulnerability in Mitsubishielectric GX Works3
Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.087R and Motion Control Setting(GX Works3 related software) versions from 1.000A to 1.042U allows a remote unauthenticated attacker to disclose sensitive information.
network
low complexity
mitsubishielectric CWE-312
7.5
2022-11-25 CVE-2022-29827 Use of Hard-coded Credentials vulnerability in Mitsubishielectric GX Works3
Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A and later allows a remote unauthenticated attacker to disclose sensitive information.
network
low complexity
mitsubishielectric CWE-798
7.5
2022-11-25 CVE-2022-29828 Use of Hard-coded Credentials vulnerability in Mitsubishielectric GX Works3
Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A and later allows a remote unauthenticated attacker to disclose sensitive information.
network
low complexity
mitsubishielectric CWE-798
7.5
2022-11-25 CVE-2022-29829 Use of Hard-coded Credentials vulnerability in Mitsubishielectric GX Works3
Use of Hard-coded Cryptographic Key vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U, GT Designer3 Version1 (GOT2000) versions from 1.122C to 1.290C and Motion Control Setting(GX Works3 related software) versions from 1.035M to 1.042U allows a remote unauthenticated attacker to disclose sensitive information.
network
low complexity
mitsubishielectric CWE-798
7.5
2022-11-25 CVE-2022-29831 Use of Hard-coded Credentials vulnerability in Mitsubishielectric GX Works3
Use of Hard-coded Password vulnerability in Mitsubishi Electric Corporation GX Works3 versions from 1.015R to 1.095Z allows a remote unauthenticated attacker to obtain information about the project file for MELSEC safety CPU modules.
network
low complexity
mitsubishielectric CWE-798
7.5
2022-05-19 CVE-2020-14496 Unspecified vulnerability in Mitsubishielectric products
Successful exploitation of this vulnerability for multiple Mitsubishi Electric Factory Automation Engineering Software Products of various versions could allow an attacker to escalate privilege and execute malicious programs, which could cause a denial-of-service condition, and allow information to be disclosed, tampered with, and/or destroyed.
network
low complexity
mitsubishielectric
7.5
2022-02-11 CVE-2020-14523 Path Traversal vulnerability in Mitsubishielectric products
Multiple Mitsubishi Electric Factory Automation products have a vulnerability that allows an attacker to execute arbitrary code.
network
low complexity
mitsubishielectric CWE-22
7.5