
CVE-2023-3373
https://notcve.org/view.php?id=CVE-2023-3373
03 Aug 2023 — Predictable Exact Value from Previous Values vulnerability in Mitsubishi Electric Corporation GOT2000 Series GT21 model versions 01.49.000 and prior and GOT SIMPLE Series GS21 model versions 01.49.000 and prior allows a remote unauthenticated attacker to hijack data connections (session hijacking) or prevent legitimate users from establishing data connections (to cause DoS condition) by guessing the listening port of the data connection on FTP server and connecting to it. • https://jvn.jp/vu/JVNVU92167394/index.html • CWE-330: Use of Insufficiently Random Values CWE-342: Predictable Exact Value from Previous Values •

CVE-2023-0525
https://notcve.org/view.php?id=CVE-2023-0525
03 Aug 2023 — Weak Encoding for Password vulnerability in Mitsubishi Electric Corporation GOT2000 Series GT27 model versions 01.49.000 and prior, GT25 model versions 01.49.000 and prior, GT23 model versions 01.49.000 and prior, GT21 model versions 01.49.000 and prior, GOT SIMPLE Series GS25 model versions 01.49.000 and prior, GS21 model versions 01.49.000 and prior, GT Designer3 Version1 (GOT2000) versions 1.295H and prior and GT SoftGOT2000 versions 1.295H and prior allows a remote unauthenticated attacker to obtain pla... • https://jvn.jp/vu/JVNVU95285923/index.html • CWE-261: Weak Encoding for Password CWE-326: Inadequate Encryption Strength •

CVE-2021-20589
https://notcve.org/view.php?id=CVE-2021-20589
19 May 2021 — Buffer access with incorrect length value vulnerability in GOT2000 series GT27 model communication driver versions 01.19.000 through 01.38.000, GT25 model communication driver versions 01.19.000 through 01.38.000, GT23 model communication driver versions 01.19.000 through 01.38.000 and GT21 model communication driver versions 01.21.000 through 01.39.000, GOT SIMPLE series GS21 model communication driver versions 01.21.000 through 01.39.000, GT SoftGOT2000 versions 1.170C through 1.250L and Tension Controlle... • https://jvn.jp/vu/JVNVU99895108/index.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •