CVE-2021-20607
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Integer Underflow vulnerability in Mitsubishi Electric GX Works2 versions 1.606G and prior, Mitsubishi Electric MELSOFT Navigator versions 2.84N and prior and Mitsubishi Electric EZSocket versions 5.4 and prior allows an attacker to cause a DoS condition in the software by getting a user to open malicious project file specially crafted by an attacker.
Una vulnerabilidad de desbordamiento de enteros en las versiones 1.606G y anteriores de Mitsubishi Electric GX Works2, en las versiones 2.84N y anteriores de Mitsubishi Electric MELSOFT Navigator y en las versiones 5.4 y anteriores de Mitsubishi Electric EZSocket permite que un atacante provoque una condición de denegación de servicio (DoS) en el software haciendo que un usuario abra un archivo de proyecto malicioso especialmente diseñado por un atacante
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-12-17 CVE Reserved
- 2021-12-17 CVE Published
- 2024-08-03 CVE Updated
- 2024-09-01 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-191: Integer Underflow (Wrap or Wraparound)
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
https://us-cert.cisa.gov/ics/advisories/icsa-21-350-05 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://jvn.jp/vu/JVNVU93817405/index.html | 2023-02-02 | |
https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2021-021_en.pdf | 2023-02-02 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Mitsubishielectric Search vendor "Mitsubishielectric" | Ezsocket Search vendor "Mitsubishielectric" for product "Ezsocket" | <= 5.4 Search vendor "Mitsubishielectric" for product "Ezsocket" and version " <= 5.4" | - |
Affected
| ||||||
Mitsubishielectric Search vendor "Mitsubishielectric" | Gx Works2 Search vendor "Mitsubishielectric" for product "Gx Works2" | <= 1.606g Search vendor "Mitsubishielectric" for product "Gx Works2" and version " <= 1.606g" | - |
Affected
| ||||||
Mitsubishielectric Search vendor "Mitsubishielectric" | Melsoft Navigator Search vendor "Mitsubishielectric" for product "Melsoft Navigator" | * | - |
Affected
|