Vulnerability Details CVE-2019-10972
Mitsubishi Electric FR Configurator2, Version 1.16S and prior. This vulnerability can be triggered when an attacker provides the target with a rogue project file (.frc2). Once a user opens the rogue project, CPU exhaustion occurs, which causes the software to quit responding until the application is restarted.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 37.3%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 7.1
Products affected by CVE-2019-10972
-
cpe:2.3:a:mitsubishielectric:electric_fr_configurator2:-
-
cpe:2.3:a:mitsubishielectric:electric_fr_configurator2:1.16s