Improper Input Validation vulnerability in simulation function of GX Works2 allows an attacker to cause a denial-of-service (DoS) condition on the function by sending specially crafted packets. However, the attacker would need to send the packets from within the same personal computer where the function is running.
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
Link | Tags |
---|---|
https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2023-015_en.pdf | vendor advisory |
https://jvn.jp/vu/JVNVU98760962/index.html | third party advisory government resource |
https://www.cisa.gov/news-events/ics-advisories/icsa-23-331-03 | government resource third party advisory us government resource |