← Back to home
ICSA-25-350-04  ·  Published 2025-12-16  ·  View on CISA ICS-CERT ↗

Mitsubishi Electric GT Designer3

CVSS 5.1 MEDIUM

Risk Summary

Successful exploitation of this vulnerability could allow an attacker obtain plaintext credentials from the project file for GT Designer3, which could result in illegally operating GOT2000 and GOT1000 series devices.

CVEs (1)

Remediations

  • Mitsubishi Electric recommends that users take the following mitigation measures to minimize the risk of exploiting this vulnerability:
  • Use a personal computer with the affected product within the LAN and block remote login from untrusted networks, hosts, and users.
  • When connecting a personal computer with the affected product to the Internet, use a firewall, virtual private network (VPN), etc., to prevent unauthorized access and allow only trusted users to remote login.
  • Install an antivirus software on the computer using the affected product.
  • Don't open untrusted files or click untrusted links.
  • For more information, see Mitsubishi Electric's security advisory.

Affected Vendors

Mitsubishi Electric

Affected Products (2)

Mitsubishi Electric · GT Designer3 Version1 (GOT2000) vers:all/*
Mitsubishi Electric · GT Designer3 Version1 (GOT1000) vers:all/*

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more