CVE-2022-29825: High severity mitsubishi electric gx works3 vulnerability
Use of Hard-coded Password vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U and GT Designer3 Version1 (GOT2000) versions from 1.122C to 1.290C allows an unauthenticated attacker to disclose sensitive information. As a result, unauthenticated users may view programs and project files or execute programs illegally.
Other sources
Use of Hard-coded Password vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U, GT Designer3 Version1 (GOT2000) versions from 1.122C to 1.290C, and MT Works2 versions from 1.100E to 1.200J allows an unauthenticated attacker to disclose sensitive information. As a result, unauthenticated users may view programs and project files or execute programs illegally.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-29825?
CVE-2022-29825 is a vulnerability that exists in Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U and GT Designer3 Version1 (GOT2000) versions from 1.122C to 1.290C.
What is the severity of CVE-2022-29825?
The severity of CVE-2022-29825 is high with a CVSS score of 7.5.
How does CVE-2022-29825 impact Mitsubishi Electric GX Works3 and GT Designer3?
CVE-2022-29825 allows an unauthenticated attacker to disclose sensitive information, allowing unauthenticated users to view programs and gain unauthorized access.
Which versions of Mitsubishi Electric GX Works3 and GT Designer3 are affected by CVE-2022-29825?
Mitsubishi Electric GX Works3 versions from 1.000A to 1.090U and GT Designer3 Version1 (GOT2000) versions from 1.122C to 1.290C are affected by CVE-2022-29825.
How can I mitigate the CVE-2022-29825 vulnerability?
To mitigate the CVE-2022-29825 vulnerability, update Mitsubishi Electric GX Works3 to a version higher than 1.090U and GT Designer3 Version1 (GOT2000) to a version higher than 1.290C.