CVE-2023-0525
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Aug 4, 2023
Updated: Aug 10, 2023
CWE ID 326
CWE ID 261
Summary
CVE-2023-0525 is a vulnerability affecting multiple Mitsubishi Electric Corporation models including GT27, GT25, GT23, GS25, and GS21, as well as GT Designer3 Version1 (GOT2000) and GT SoftGOT2000. This weakness lies in the encoding of passwords, which allows an unauthenticated attacker to intercept and decrypt encrypted password packets. The affected systems include those with the Data Transfer Security function enabled, enabling an attacker to obtain plaintext passwords during data transfer.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Mitsubishi Electric Corporation