MELSOFT 7-Zip Vulnerabilities

Mitsubishielectric pdf 2025-12-29T00:00:00

Abstract

Denial-of-service (DoS) vulnerabilities due to Heap-based Buffer Overflow (CWE-122) and NULL Pointer Dereference (CWE-476), an information tampering vulnerability due to Improper Link Resolution Before File Access ('Link Following') (CWE-59), and a malicious code execution vulnerability due to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CWE-22) exist in the 7-Zip component, the file compression/decompression software included in MELSOFT Update Manager.

Loading executive summary...
Loading full markdown...

Your browser does not support inline PDF viewing.

Download the PDF to view it.

Match Rate: 10.00/10 (Relevance to core cybersecurity goals)

LINK COPIED TO CLIPBOARD