← Back to home
ICSA-24-191-02  ·  Published 2024-07-09  ·  View on CISA ICS-CERT ↗

Mitsubishi Electric MELIPC Series MI5122-VW

CVSS 8.8 HIGH

Risk Summary

Successful exploitation of this vulnerability could allow an attacker to tamper with, destroy, disclose, or delete information in the product, or cause a denial-of-service (DoS) condition on the product.

CVEs (1)

Remediations

  • Mitsubishi Electric has fixed the vulnerability in the following products:
  • MI5122-VW: firmware versions "08" or later
  • Customers using the affected product should take workarounds and mitigations in Mitsubishi Electric advisory 2024-003, because updating the product to the fixed version is not available.
  • Please refer to Mitsubishi Electric's user manual for how to check the firmware version.
  • MELIPC MI5000 Series User's Manual (Startup) "Appendix 17 Checking Production Information and Firmware Version"
  • The manuals for Mitsubishi products are available for download from Mitsubishi Electric's website.
  • For more information, contact Mitsubishi Electric.

Affected Vendors

Mitsubishi Electric

Affected Products (1)

Mitsubishi Electric · MI5122-VW Firmware >="05"|<="07"

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more