Description
A remote unauthenticated attacker who has bypassed authentication could execute arbitrary OS commands to disclose, tamper with, destroy or delete information in Mitsubishi Electric smartRTU, or cause a denial-of service condition on the product.
Problem types
Product status
Any version
Credits
Noam Moshe of Claroty Team82 reported this vulnerability to CISA.
References
emea.mitsubishielectric.com/...lity/quality-news-information
www.cisa.gov/news-events/ics-advisories/icsa-25-105-09