Vulnerabilities > Mitsubishielectric > MC Works32 > 9.50.255.02

DATE CVE VULNERABILITY TITLE RISK
2020-07-16 CVE-2020-12015 Deserialization of Untrusted Data vulnerability in multiple products
A specially crafted communication packet sent to the affected systems could cause a denial-of-service condition due to improper deserialization.
network
low complexity
mitsubishielectric iconics CWE-502
5.0
2020-07-16 CVE-2020-12013 SQL Injection vulnerability in multiple products
A specially crafted WCF client that interfaces to the may allow the execution of certain arbitrary SQL commands remotely.
network
low complexity
mitsubishielectric iconics CWE-89
6.4
2020-07-16 CVE-2020-12007 Deserialization of Untrusted Data vulnerability in multiple products
A specially crafted communication packet sent to the affected devices could allow remote code execution and a denial-of-service condition due to a deserialization vulnerability.
network
low complexity
mitsubishielectric iconics CWE-502
critical
9.8
2020-07-16 CVE-2020-12009 Deserialization of Untrusted Data vulnerability in multiple products
A specially crafted communication packet sent to the affected device could cause a denial-of-service condition due to a deserialization vulnerability.
network
low complexity
mitsubishielectric iconics CWE-502
5.0
2020-07-16 CVE-2020-12011 Out-of-bounds Write vulnerability in multiple products
A specially crafted communication packet sent to the affected systems could cause a denial-of-service condition or allow remote code execution.
network
low complexity
mitsubishielectric iconics CWE-787
7.5