Description
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in MITSUBSHI CNC Series allows a remote unauthenticated attacker to cause Denial of Service (DoS) condition and execute arbitrary code on the product by sending specially crafted packets. In addition, system reset is required for recovery.
Published: 2023-08-03
Score: 9.8 Critical
EPSS: 1.0% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-44014 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in MITSUBSHI CNC Series allows a remote unauthenticated attacker to cause Denial of Service (DoS) condition and execute arbitrary code on the product by sending specially crafted packets. In addition, system reset is required for recovery.
History

Wed, 04 Dec 2024 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Mitsubishielectric C80 C80 Firmware E70 E70 Firmware E80 E80 Firmware M70v M70v Firmware M720vs M720vs 15-type M720vs 15-type Firmware M720vs Firmware M720vw M720vw Firmware M730vs M730vs 15-type M730vs 15-type Firmware M730vs Firmware M730vw M730vw Firmware M750vs M750vs 15-type M750vs 15-type Firmware M750vs Firmware M750vw M750vw Firmware M80 M800s M800s Firmware M800vs M800vs Firmware M800vw M800vw Firmware M800w M800w Firmware M80 Firmware M80v M80v Firmware M80vw M80vw Firmware M80w M80w Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: Mitsubishi

Published:

Updated: 2024-12-04T15:16:48.710Z

Reserved: 2023-06-21T00:16:48.923Z

Link: CVE-2023-3346

cve-icon Vulnrichment

Updated: 2024-08-02T06:55:02.703Z

cve-icon NVD

Status : Modified

Published: 2023-08-03T05:15:10.603

Modified: 2024-11-21T08:17:04.037

Link: CVE-2023-3346

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses