Vulnerability Details CVE-2023-6374
Authentication Bypass by Capture-replay vulnerability in Mitsubishi Electric Corporation MELSEC WS Series WS0-GETH00200 all serial numbers allows a remote unauthenticated attacker to bypass authentication by capture-replay attack and illegally login to the affected module. As a result, the remote attacker who has logged in illegally may be able to disclose or tamper with the programs and parameters in the modules.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 62.6%
CVSS Severity
CVSS v3 Score 5.9
Products affected by CVE-2023-6374
-
cpe:2.3:h:mitsubishielectric:melsec_ws0-geth00200:-
-
cpe:2.3:o:mitsubishielectric:melsec_ws0-geth00200_firmware:-