Description
Cleartext Storage of Sensitive Information Vulnerability in GX Works2 all versions allows an attacker to disclose credential information stored in plaintext from project files. As a result, the attacker may be able to open project files protected by user authentication using disclosed credential information, and obtain or modify project information.
Problem types
CWE-312 Cleartext Storage of Sensitive Information
Product status
All versions
Credits
Jiho Shin (M.S. graduate, Sungkyunkwan University)
References
www.mitsubishielectric.com/...nerability/pdf/2025-016_en.pdf
jvn.jp/vu/JVNVU95288056/