CVE-2023-5247: High severity mitsubishi electric gx works3 vulnerability
Malicious Code Execution Vulnerability due to External Control of File Name or Path in multiple Mitsubishi Electric FA Engineering Software Products allows a malicious attacker to execute a malicious code by having legitimate users open a specially crafted project file, which could result in information disclosure, tampering and deletion, or a denial-of-service (DoS) condition.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-5247?
CVE-2023-5247 is a vulnerability that allows a malicious attacker to execute a malicious code by having legitimate users open a specially crafted project file in multiple Mitsubishi Electric FA Engineering Software Products.
Which software products are affected by CVE-2023-5247?
CVE-2023-5247 affects multiple Mitsubishi Electric FA Engineering Software Products, including Gx Works3, Melsoft Iq Appportal, Melsoft Navigator, and Motion Control Setting.
What is the severity of CVE-2023-5247?
CVE-2023-5247 has a severity rating of 7.8, which is classified as high.
Is there a fix for CVE-2023-5247?
Yes, Mitsubishi Electric has released patches to address the CVE-2023-5247 vulnerability. Please refer to their official website or security advisories for more information.
Where can I find more information about CVE-2023-5247?
You can find more information about CVE-2023-5247 on the official Mitsubishi Electric PSIRT website and the JVN database.