216.73.216.233

CVE-2025-10314

· Published 05/02/2026 03:15 · Modified 05/02/2026 14:57

Labels: CVE-2025-10314 2026-02-05CVE-2025-10314CWE-276[email protected]

Essential information

Published
05/02/2026 03:15
Modified
05/02/2026 14:57
Author
Creator
CVSS
8.8 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

CVSS metrics

Description

Incorrect Default Permissions vulnerability in Mitsubishi Electric Corporation FREQSHIP-mini for Windows versions 8.0.0 to 8.0.2 allows a local attacker to execute arbitrary code with system privileges by replacing service executable files (EXE) or DLLs in the installation directory with specially crafted files. As a result, the attacker may be able to disclose, tamper with, delete, or destroy information stored on the PC where the affected product is installed, or cause a Denial of Service (DoS) condition on the affected system.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
mitsubishi electric / freqship mini cpe:2.3:a:mitsubishi_electric:freqship_mini:8.0.0-8.0.2:*:*:*:*:*:*:*

References