← Back to home
ICSA-21-112-02  ·  Published 2021-07-27  ·  View on CISA ICS-CERT ↗

Mitsubishi Electric GOT (Update A)

CVSS 5.9 MEDIUM

Risk Summary

Successful exploitation of this vulnerability may allow an attacker to gain unauthorized access.

CVEs (1)

Remediations

  • Mitsubishi Electric instructs users to restrict access to the product only from trusted networks and hosts until they can update
  • GT27 model: VNC server Version 01.40.000 or later
  • GT25 model: VNC server Version 01.40.000 or later
  • GT2107-WTBD: VNC server Version 01.41.000 or later
  • GT2107-WTSD: VNC server Version 01.41.000 or later
  • GS2110-WTBD-N: VNC server Version 01.41.000 or later
  • GS2107-WTBD-N: VNC server Version 01.41.000 or later
  • Please refer to the Mitsubishi Electric website for details and update procedures.

Affected Vendors

Mitsubishi Electric

Affected Products (6)

Mitsubishi Electric · GT2107-WTSD VNC server <= 01.40.000
Mitsubishi Electric · GT25 model VNC server <= 01.39.010
Mitsubishi Electric · GS2107-WTBD-N VNC server <= 01.40.000
Mitsubishi Electric · GT2107-WTBD VNC server <= 01.40.000
Mitsubishi Electric · GS2110-WTBD-N VNC server <= 01.40.000
Mitsubishi Electric · GT27 model VNC server <= 01.39.010

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more