{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-18T11:39:23.601","vulnerabilities":[{"cve":{"id":"CVE-2020-12013","sourceIdentifier":"ics-cert@hq.dhs.gov","published":"2020-07-16T22:15:11.417","lastModified":"2024-11-21T04:59:06.937","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A specially crafted WCF client that interfaces to the may allow the execution of certain arbitrary SQL commands remotely. This affects: Mitsubishi Electric MC Works64 Version 4.02C (10.95.208.31) and earlier, all versions; Mitsubishi Electric MC Works32 Version 3.00A (9.50.255.02); ICONICS GenBroker64, Platform Services, Workbench, FrameWorX Server v10.96 and prior; ICONICS GenBroker32 v9.5 and prior."},{"lang":"es","value":"Un cliente WCF especialmente diseñado que interactúa con el puede permitir la ejecución de determinados comandos SQL arbitrarios remotamente. Esto afecta: Mitsubishi Electric MC Works64 Versión 4.02C (10.95.208.31) y anteriores, todas las versiones; Mitsubishi Electric MC Works32 versión 3.00A (9.50.255.02); ICONICS GenBroker64, Platform Services, Workbench, FrameWorX Server versión v10.96 y anteriores; ICONICS GenBroker32 versión v9.5 y anteriores"}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N","baseScore":9.1,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":5.2}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"ics-cert@hq.dhs.gov","type":"Secondary","description":[{"lang":"en","value":"CWE-94"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-89"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mitsubishielectric:mc_works32:9.50.255.02:*:*:*:*:*:*:*","matchCriteriaId":"A68D91E4-0C65-45F0-965E-A6AAE0E2F09F"},{"vulnerable":true,"criteria":"cpe:2.3:a:mitsubishielectric:mc_works64:*:*:*:*:*:*:*:*","versionEndIncluding":"10.95.208.31","matchCriteriaId":"9DFE4C50-FB00-4449-8A7F-D524109A1F1D"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:iconics:energy_analytix:-:*:*:*:*:*:*:*","matchCriteriaId":"DD143148-B191-4D8E-9C28-09D4AC5D192C"},{"vulnerable":true,"criteria":"cpe:2.3:a:iconics:facility_analytix:-:*:*:*:*:*:*:*","matchCriteriaId":"BE3C5226-94D4-4826-9B76-72626081DF46"},{"vulnerable":true,"criteria":"cpe:2.3:a:iconics:genesis64:-:*:*:*:*:*:*:*","matchCriteriaId":"17E644D8-AB8E-4E3C-AE4B-64D3BBCC30BF"},{"vulnerable":true,"criteria":"cpe:2.3:a:iconics:hyper_historian:-:*:*:*:*:*:*:*","matchCriteriaId":"78FF2A71-4918-491E-A5D8-DEB9E17FA6E4"},{"vulnerable":true,"criteria":"cpe:2.3:a:iconics:mobilehmi:-:*:*:*:*:*:*:*","matchCriteriaId":"16745C56-A59A-4C38-92E1-FC5C63220989"},{"vulnerable":true,"criteria":"cpe:2.3:a:iconics:quality_analytix:-:*:*:*:*:*:*:*","matchCriteriaId":"717A4B7B-2A42-4A9C-961F-1EA5E62FB188"},{"vulnerable":true,"criteria":"cpe:2.3:a:iconics:smart_energy_analytix:-:*:*:*:*:*:*:*","matchCriteriaId":"5082C435-FCCD-4CF6-891E-73F846A6FB40"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:iconics:bizviz:-:*:*:*:*:*:*:*","matchCriteriaId":"CF628CB2-BCA9-4E69-A9CB-846577F98DA1"},{"vulnerable":true,"criteria":"cpe:2.3:a:iconics:genesis32:-:*:*:*:*:*:*:*","matchCriteriaId":"771DB32A-CD85-4638-B90E-25D9B4951DE5"}]}]}],"references":[{"url":"https://us-cert.cisa.gov/ics/advisories/icsa-20-170-02","source":"ics-cert@hq.dhs.gov","tags":["Third Party Advisory","US Government Resource"]},{"url":"https://us-cert.cisa.gov/ics/advisories/icsa-20-170-03","source":"ics-cert@hq.dhs.gov","tags":["Third Party Advisory","US Government Resource"]},{"url":"https://us-cert.cisa.gov/ics/advisories/icsa-20-170-02","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]},{"url":"https://us-cert.cisa.gov/ics/advisories/icsa-20-170-03","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"]}]}}]}