Malicious Code Execution Vulnerability in FA Engineering Software Products
Vulnerability Description
Incorrect Default Permissions vulnerability in Mitsubishi Electric Corporation multiple FA engineering software products allows a malicious local attacker to execute a malicious code, resulting in information disclosure, tampering with and deletion, or a denial-of-service (DoS) condition, if the product is installed in a folder other than the default installation folder.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-4088
Credits & Attribution
No credits recorded in the NVD database.
References
More from Mitsubishi Electric Corporation
View All →Affected Vendor
Mitsubishi Electric Corporation
View all reports →