Vulnerability index

Browse CVEs

19 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Genesis64 HIGH 7.8
CVE-2024-7587

Incorrect Default Permissions vulnerability in GenBroker32, which is included in the installers for Mitsubishi Electric GENESIS64 versions 10.97.3 an…

Fix: after 10.97.3
Fix from $1,950 2024-10-22
Genesis64 HIGH 7.1
CVE-2022-40264

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ICONICS/Mitsubishi Electric GENESIS64 versions 10.96 …

Fix: after 10.97.2
Fix from $1,950 2022-12-14
Genesis64 CRITICAL 9.8
CVE-2022-33318EPSS 45%

Deserialization of Untrusted Data vulnerability in Mitsubishi Electric GENESIS64 versions 10.97 to 10.97.1, Mitsubishi Electric Iconics Digital Solut…

Fix: after 10.95.210.01
Fix from $2,300 2022-07-20
Genesis64 CRITICAL 9.1
CVE-2022-33319

Out-of-bounds Read vulnerability in Mitsubishi Electric GENESIS64 versions 10.97 to 10.97.1, Mitsubishi Electric Iconics Digital Solutions GENESIS64 …

Fix: after 10.95.210.01
Fix from $2,300 2022-07-20
Genesis64 HIGH 7.8
CVE-2022-33315

Deserialization of Untrusted Data vulnerability in Mitsubishi Electric GENESIS64 versions 10.97 to 10.97.1, Mitsubishi Electric Iconics Digital Solut…

Fix: after 10.95.210.01
Fix from $1,950 2022-07-20
Genesis64 HIGH 7.8
CVE-2022-33316

Deserialization of Untrusted Data vulnerability in Mitsubishi Electric GENESIS64 versions 10.97 to 10.97.1, Mitsubishi Electric Iconics Digital Solut…

Fix: after 10.95.210.01
Fix from $1,950 2022-07-20
Genesis64 HIGH 7.8
CVE-2022-33317

Inclusion of Functionality from Untrusted Control Sphere vulnerability in Mitsubishi Electric GENESIS64 versions 10.97 to 10.97.1, Mitsubishi Electri…

Fix: after 10.95.210.01
Fix from $1,950 2022-07-20
Genesis64 HIGH 7.8
CVE-2022-33320

Deserialization of Untrusted Data vulnerability in Mitsubishi Electric GENESIS64 versions 10.97 to 10.97.1, Mitsubishi Electric Iconics Digital Solut…

Fix: after 10.95.210.01
Fix from $1,950 2022-07-20
Genesis64 HIGH 7.5
CVE-2022-29834

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Mitsubishi Electric GENESIS64 versions 10.97 to 10.97…

Mitigation only
Fix from $1,950 2022-07-20
Genesis64 MEDIUM 5.5
CVE-2022-23129

Plaintext Storage of a Password vulnerability in Mitsubishi Electric MC Works64 versions 4.04E (10.95.210.01) and prior and ICONICS GENESIS64 version…

Fix: 10.95.210.01+
Fix from $1,600 2022-01-21
Genesis64 MEDIUM 5.5
CVE-2022-23130

Buffer Over-read vulnerability in Mitsubishi Electric MC Works64 versions 4.00A to 4.04E, Mitsubishi Electric GENESIS64 versions 10.97 and prior, Mit…

Fix: after 10.97
Fix from $1,600 2022-01-21
Analytix CRITICAL 9.8
CVE-2022-23128

Incomplete List of Disallowed Inputs vulnerability in Mitsubishi Electric MC Works64 versions 4.00A (10.95.201.23) to 4.04E (10.95.210.01), ICONICS G…

Fix: after 10.97
Fix from $2,300 2022-01-21
Mobilehmi MEDIUM 6.1
CVE-2022-23127

Cross-site Scripting vulnerability in Mitsubishi Electric MC Works64 versions 4.04E (10.95.210.01) and prior and ICONICS MobileHMI versions 10.96.2 a…

Fix: 10.95.210.01+
Fix from $1,600 2022-01-21
Webhmi HIGH 7.5
CVE-2016-2289

Directory traversal vulnerability in ICONICS WebHMI 9 and earlier allows remote attackers to read configuration files, and consequently discover pass…

Fix: after 9.0
Fix from $1,950 2016-04-01
Genesis32 HIGH 9.3
CVE-2014-0758

An ActiveX control in GenLaunch.htm in ICONICS GENESIS32 8.0, 8.02, 8.04, and 8.05 allows remote attackers to execute arbitrary programs via a crafte…

Mitigation only
Fix from $1,950 2014-02-24
Genesis32 HIGH 10.0
CVE-2011-5089

Buffer overflow in the Security Login ActiveX controls in ICONICS GENESIS32 8.05, 9.0, 9.1, and 9.2 and BizViz 8.05, 9.0, 9.1, and 9.2 allows remote …

Mitigation only
Fix from $1,950 2012-04-18
Bizviz HIGH 9.3
CVE-2011-5088

The GENESIS32 IcoSetServer ActiveX control in ICONICS GENESIS32 9.21 and BizViz 9.21 configures the trusted zone on the basis of user input, which al…

Mitigation only
Fix from $1,950 2012-04-18
Bizviz HIGH 9.3
CVE-2011-2089EPSS 38%

Stack-based buffer overflow in the SetActiveXGUID method in the VersionInfo ActiveX control in GenVersion.dll 8.0.138.0 in the WebHMI subsystem in IC…

No fix yet
Fix from $1,950 2011-05-13
Dialog Wrapper Module Activex Control HIGH 7.5
CVE-2006-6488EPSS 8%

Stack-based buffer overflow in the DoModal function in the Dialog Wrapper Module ActiveX control (DlgWrapper.dll) before 8.4.166.0, as used by ICONIC…

Fix: after 8.4.165.0
Fix from $1,950 2006-12-31