CVE-2013-3075: Mitsubishi-Automation Mitsubishi Mx Component
High severity, CVSS 10.0. EPSS: 10.8% chance of exploitation in the next 30 days.
Multiple buffer overflows in ActUWzd.dll 1.0.0.1 in Mitsubishi MX Component 3, as distributed in Citect CitectFacilities 7.10 and CitectScada 7.10r1, allow remote attackers to execute arbitrary code via a long string, as demonstrated by a long WzTitle property value to a certain ActiveX control.
Affected products
- Mitsubishi-Automation Mitsubishi Mx Component: version 3 only
- Schneider Electric Citectfacilities: version 7.10 only
- Schneider Electric Citectscada: version 7.10 only
Published 2013-04-19. Last modified 2026-06-16.