PT-2020-18571 · Mitsubishi · Mitsubishi Electric Got2000 Series
Published
2020-07-07
·
Updated
2021-07-21
·
CVE-2020-5598
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Mitsubishi Electric GOT2000 series versions -Y and earlier
Description
The issue concerns an improper access control vulnerability in the TCP/IP function of the firmware. This vulnerability may allow a remote attacker to bypass access restrictions, stop the network functions of the products, or execute a malicious program via a specially crafted packet.
Recommendations
For Mitsubishi Electric GOT2000 series versions -Y and earlier, update the firmware to a version later than -Y to resolve the issue. As a temporary workaround, consider restricting access to the network functions of the products to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mitsubishi Electric Got2000 Series