Medium
Improper restriction of XML vulnerability could allow a malicious attacker to send a file on the computer running the product to the outside and could allow a malicious attacker to cause the product to enter a denial-of-service condition.
Denial of service
Mitsubishi Electric
Factory Automation Engineering Software Products
Refer to ICS advisory for the complete list of affected products and upgraded patches.