Mitsubishi Electric Air Conditioning Systems Vulnerability (ICSA-25-177-01)
Executive Summary A critical vulnerability, identified as CVE-2025-3699 with a CVSS v3 score of 9.8, affects a wide range of Mitsubishi Electric Air Conditioning Systems deployed worldwide within the Commercial Facilities sector. The vulnerability stems from a “Missing Authentication for Critical Function,” which could allow a remote attacker to bypass authentication entirely. Successful exploitation could […]