ICSA-21-112-02
·
Published 2021-07-27
·
View on CISA ICS-CERT ↗
Mitsubishi Electric GOT (Update A)
CVSS 5.9
MEDIUM
Risk Summary
Successful exploitation of this vulnerability may allow an attacker to gain unauthorized access.
CVEs (1)
Remediations
- Mitsubishi Electric instructs users to restrict access to the product only from trusted networks and hosts until they can update
- GT27 model: VNC server Version 01.40.000 or later
- GT25 model: VNC server Version 01.40.000 or later
- GT2107-WTBD: VNC server Version 01.41.000 or later
- GT2107-WTSD: VNC server Version 01.41.000 or later
- GS2110-WTBD-N: VNC server Version 01.41.000 or later
- GS2107-WTBD-N: VNC server Version 01.41.000 or later
- Please refer to the Mitsubishi Electric website for details and update procedures.
Affected Vendors
Mitsubishi Electric
Affected Products (6)
Mitsubishi Electric
·
GT2107-WTSD VNC server
<= 01.40.000
Mitsubishi Electric
·
GT25 model VNC server
<= 01.39.010
Mitsubishi Electric
·
GS2107-WTBD-N VNC server
<= 01.40.000
Mitsubishi Electric
·
GT2107-WTBD VNC server
<= 01.40.000
Mitsubishi Electric
·
GS2110-WTBD-N VNC server
<= 01.40.000
Mitsubishi Electric
·
GT27 model VNC server
<= 01.39.010
Affected Sectors
Critical Manufacturing
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more