CVE-2022-38166 - Crashing F-Secure Endpoint Protection Remotely with Crafted Files
Cybersecurity defenders everywhere rely on endpoint protection software as their first line of defense. But what if that very software itself has a flaw that
CVE-2022-29832 - Cleartext Storage of Sensitive Info in Mitsubishi Electric GX Works3/2/Developer – Exploit Breakdown and Practical Guide
Author: SIEM-Safe
Date: 2024-06-30
Introduction
Industrial automation depends on software for programming and configuring controllers. Mitsubishi Electric’s GX Works3, GX Works2,
CVE-2022-25164 Mitsubishi Electric GX Works3 and MX OPC UA Module Configurator-R have a vulnerability that allows the disclosure of sensitive information if Cleartext Storage of Sensitive Information is enabled.
Exploitation of Cleartext Storage of Sensitive Information vulnerability allows remote attackers to obtain sensitive information about authentication methods and potentially gain access to the OPC
CVE-2022-29833 An attack can disclose sensitive information if Mitsubishi Electric Corporation GX Works3 is not properly protected against Inc. insufficiently protected credentials.
The issue was discovered during internal penetration testing. Vulnerable versions are Mitsubishi Electric GX Works3 versions 1.015R and later. An attacker can exploit the
CVE-2022-40976 - How a ZIP-Slip Path Traversal Bug Hit Pilz Devices — And How Attackers Exploit It
In 2022, a dangerous vulnerability—CVE-2022-40976—was discovered in several industrial products from Pilz, a global leader in automation safety solutions. This vulnerability
Episode
00:00:00
00:00:00