Source |
CVE Liste |
Identifiant |
8341446 |
Date de publication |
2023-06-02 05:15:10 (vue: 2023-06-02 11:06:59) |
Titre |
CVE-2023-2062 |
Texte |
Missing Password Field Masking vulnerability in Mitsubishi Electric Corporation EtherNet/IP configuration tools SW1DNN-EIPCT-BD and SW1DNN-EIPCTFX5-BD allows a remote unauthenticated attacker to know the password for MELSEC iQ-R Series EtherNet/IP module RJ71EIP91 and MELSEC iQ-F Series EtherNet/IP module FX5-ENET/IP. This vulnerability results in authentication bypass vulnerability, which allows the attacker to access MELSEC iQ-R Series EtherNet/IP module RJ71EIP91 and MELSEC iQ-F Series EtherNet/IP module FX5-ENET/IP via FTP.
Missing Password Field Masking vulnerability in Mitsubishi Electric Corporation EtherNet/IP configuration tools SW1DNN-EIPCT-BD and SW1DNN-EIPCTFX5-BD allows a remote unauthenticated attacker to know the password for MELSEC iQ-R Series EtherNet/IP module RJ71EIP91 and MELSEC iQ-F Series EtherNet/IP module FX5-ENET/IP. This vulnerability results in authentication bypass vulnerability, which allows the attacker to access MELSEC iQ-R Series EtherNet/IP module RJ71EIP91 and MELSEC iQ-F Series EtherNet/IP module FX5-ENET/IP via FTP. |
Notes |
|
Envoyé |
Oui |
Condensat |
2023 2062 access allows attacker authentication bypass configuration corporation cve eipct eipctfx5 electric enet/ip ethernet/ip field ftp fx5 know masking melsec missing mitsubishi module password remote resultsin rj71eip91 series sw1dnn tools unauthenticated vulnerability which |
Tags |
Vulnerability
|
Stories |
|
Move |
|