Cleartext Storage of Sensitive Information Vulnerability in Mitsubishi Electric GX Works3 and MX OPC UA Module Configurator-R

Cleartext Storage of Sensitive Information Vulnerability in Mitsubishi Electric GX Works3 and MX OPC UA Module Configurator-R

CVE-2022-25164 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.095Z and Mitsubishi Electric MX OPC UA Module Configurator-R versions 1.08J and prior allows a remote unauthenticated attacker to disclose sensitive information. As a result, unauthenticated attackers can gain unauthorized access to the MELSEC CPU module and the MELSEC OPC UA server module.

Learn more about our Cis Benchmark Audit For Server Software.