CVE-2023-5247
CVSS V2 None
CVSS V3 None
Description
Malicious Code Execution Vulnerability due to External Control of File Name or Path in multiple Mitsubishi Electric FA Engineering Software Products allows a malicious attacker to execute a malicious code by having legitimate users open a specially crafted project file, which could result in information disclosure, tampering and deletion, or a denial-of-service (DoS) condition.
Overview
- CVE ID
- CVE-2023-5247
- Assigner
- Mitsubishi
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-11-30T03:57:30.083Z
- Last Modified Date
- 2023-11-30T03:57:30.083Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2023-016_en.pdf | vendor-advisory |
https://jvn.jp/vu/JVNVU93383160/ | government-resource |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-5247 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-5247 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-25 05:45:22 | Added to TrackCVE |