Remote Code Execution Vulnerability in ICONICS GENESIS64 and Mitsubishi Electric MC Works64

Remote Code Execution Vulnerability in ICONICS GENESIS64 and Mitsubishi Electric MC Works64

CVE-2022-33318 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Deserialization of Untrusted Data vulnerability in ICONICS GENESIS64 versions 10.97.1 and prior and Mitsubishi Electric MC Works64 versions 4.04E (10.95.210.01) and prior allows a remote unauthenticated attacker to execute an arbitrary malicious code by sending specially crafted packets to the GENESIS64 server.

Learn more about our Cis Benchmark Audit For Server Software.