First published: Tue Apr 17 2018(Updated: )
Mitsubishi E-Designer, Version 7.52 Build 344 contains six code sections which may be exploited to overwrite the stack. This can result in arbitrary code execution, compromised data integrity, denial of service, and system crash.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Mitsubishielectric E-designer | =7.52 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-9638 is considered a critical vulnerability due to its potential for arbitrary code execution.
To fix CVE-2017-9638, upgrade to a later version of Mitsubishi E-Designer that addresses this vulnerability.
Exploiting CVE-2017-9638 can lead to arbitrary code execution, data integrity compromise, denial of service, and system crashes.
Mitsubishi E-Designer version 7.52 is affected by CVE-2017-9638.
There are no widely recommended workarounds for CVE-2017-9638, and the best course of action is to apply the available security update.