CVE-2023-4088

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Sep 20, 2023
Updated: Jul 4, 2024
CWE ID 787

Summary

CVE-2023-4088 is a vulnerability affecting multiple FA engineering software products from Mitsubishi Electric Corporation. This Incorrect Default Permissions issue enables a local attacker to execute malicious code, potentially leading to data disclosure, manipulation, and deletion, or causing a Denial-of-Service (DoS) condition. The risk is heightened when the software is installed in a folder other than the default one.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share