Vulnerabilities > Mitsubishielectric > Critical

DATE CVE VULNERABILITY TITLE RISK
2018-04-17 CVE-2017-9638 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Mitsubishielectric E-Designer 7.52
Mitsubishi E-Designer, Version 7.52 Build 344 contains six code sections which may be exploited to overwrite the stack.
network
low complexity
mitsubishielectric CWE-119
critical
10.0
2018-04-17 CVE-2017-9636 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Mitsubishielectric E-Designer 7.52
Mitsubishi E-Designer, Version 7.52 Build 344 contains five code sections which may be exploited to overwrite the heap.
network
low complexity
mitsubishielectric CWE-119
critical
10.0
2018-04-17 CVE-2017-9634 Out-of-bounds Write vulnerability in Mitsubishielectric E-Designer 7.52
Mitsubishi E-Designer, Version 7.52 Build 344 contains two code sections which may be exploited to allow an attacker to overwrite arbitrary memory locations.
network
low complexity
mitsubishielectric CWE-787
critical
10.0
2014-02-24 CVE-2013-2817 Code Injection vulnerability in Mitsubishielectric Mc-Worx Suite 8.02
An ActiveX control in IcoLaunch.dll in Mitsubishi Electric Automation MC-WorX Suite 8.02 allows user-assisted remote attackers to execute arbitrary programs via a crafted HTML document in conjunction with a Login Client button click.
network
mitsubishielectric CWE-94
critical
9.3