Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Mitsubishi Electric FR Configurator2, Version 1.16S and prior. This vulnerability is triggered when input passed to the XML parser is not sanitized while parsing the XML project and/or template file (.frc2). Once a user opens the file, the attacker could read arbitrary files.
CVSS Information
N/A
Vulnerability Type
XML外部实体引用的不恰当限制(XXE)
Vulnerability Title
Mitsubishi Electric FR Configurator2 代码问题漏洞
Vulnerability Description
Mitsubishi Electric FR Configurator2是日本三菱电机(Mitsubishi Electric)公司的一款变频器驱动配置应用程序。 Mitsubishi Electric FR Configurator2 1.16S及之前版本中存在代码问题漏洞,该漏洞源于程序没有过滤传递到XML解析器的输入。攻击者可利用该漏洞读取任意文件。
CVSS Information
N/A
Vulnerability Type
N/A