ICSA-24-191-02
·
Published 2024-07-09
·
View on CISA ICS-CERT ↗
Mitsubishi Electric MELIPC Series MI5122-VW
CVSS 8.8
HIGH
Risk Summary
Successful exploitation of this vulnerability could allow an attacker to tamper with, destroy, disclose, or delete information in the product, or cause a denial-of-service (DoS) condition on the product.
CVEs (1)
Remediations
- Mitsubishi Electric has fixed the vulnerability in the following products:
- MI5122-VW: firmware versions "08" or later
- Customers using the affected product should take workarounds and mitigations in Mitsubishi Electric advisory 2024-003, because updating the product to the fixed version is not available.
- Please refer to Mitsubishi Electric's user manual for how to check the firmware version.
- MELIPC MI5000 Series User's Manual (Startup) "Appendix 17 Checking Production Information and Firmware Version"
- The manuals for Mitsubishi products are available for download from Mitsubishi Electric's website.
- For more information, contact Mitsubishi Electric.
Affected Vendors
Mitsubishi Electric
Affected Products (1)
Mitsubishi Electric
·
MI5122-VW Firmware
>="05"|<="07"
Affected Sectors
Critical Manufacturing
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more