← Back to home
ICSA-21-350-04  ·  Published 2021-12-16  ·  View on CISA ICS-CERT ↗

Mitsubishi Electric GX Works2

CVSS 5.3 MEDIUM

Risk Summary

Successful exploitation of this vulnerability may cause a denial-of-service condition in GX Works2.

CVEs (1)

Remediations

  • GX Works2, version 1.610L or later
  • Unzip the downloaded file (zip format).
  • Run "setup.exe" in the extracted folder to install.
  • Restrict the connection of all control system devices and systems to the network so they can only be accessed from trusted networks and hosts.
  • Locate control system networks and remote devices behind firewalls and isolate them from the business network.
  • Use virtual private network (VPN) when remote access to Mitsubishi Electric PLC is required.
  • For specific update instructions and additional details see the Mitsubishi Electric advisory.

Affected Vendors

Mitsubishi Electric

Affected Products (1)

Mitsubishi Electric · GX Works2 <= 1.606G

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more