MEDIUM
Mitsubishi Electric FR Configurator2, Version 1.16S and prior
Published Jul 25, 2019
5.5
MEDIUMCVSS 3.1
EPSS 0.89%
Description
Mitsubishi Electric FR Configurator2, Version 1.16S and prior. This vulnerability can be triggered when an attacker provides the target with a rogue project file (.frc2). Once a user opens the rogue project, CPU exhaustion occurs, which causes the software to quit responding until the application is restarted.
Affected products
-
- Version Version 1.16S and priorStatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Mitsubishi Electric | Mitsubishi Electric FR Configurator2 | n/a |
|
- ≤ 1.16s
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (2)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-2686 Advisory
- https://www.us-cert.gov/ics/advisories/icsa-19-204-01 x_refsource_MISCThird Party AdvisoryUS Government Resource
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-2686 | Advisory | |
| https://www.us-cert.gov/ics/advisories/icsa-19-204-01 | x_refsource_MISCThird Party AdvisoryUS Government Resource |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner icscert
Published Jul 25, 2019
Updated Aug 4, 2024
Reserved Apr 8, 2019
Link CVE-2019-10972
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2019-2686 Assigner icscert
Published Jul 25, 2019
Updated Aug 4, 2024
Exploited since n/a
Link EUVD-2019-2686