CVE-2022-40266
Denial-of-Service (DoS) Vulnerability in FTP Server Function on GOT2000 Series
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Improper Input Validation vulnerability in Mitsubishi Electric GOT2000 Series GT27 model FTP server versions 01.39.000 and prior, Mitsubishi Electric GOT2000 Series GT25 model FTP server versions 01.39.000 and prior and Mitsubishi Electric GOT2000 Series GT23 model FTP server versions 01.39.000 and prior allows a remote authenticated attacker to cause a Denial of Service condition by sending specially crafted command.
Vulnerabilidad de validación de entrada incorrecta en el servidor FTP Mitsubishi Electric GOT2000 Serie modelo GT27 versiones 01.39.000 y anteriores, el servidor FTP Mitsubishi Electric GOT2000 Serie modelo GT25 versiones 01.39.000 y anteriores y el servidor FTP Mitsubishi Electric GOT2000 Serie modelo GT23 versiones 01.39.000 y anteriores lo permite un atacante remoto autenticado provoque una condición de denegación de servicio mediante el envío de un comando especialmente manipulado.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-09-08 CVE Reserved
- 2022-11-24 CVE Published
- 2024-06-16 EPSS Updated
- 2024-08-03 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-20: Improper Input Validation
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://jvn.jp/vu/JVNVU95633416 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2022-016_en.pdf | 2022-11-30 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Mitsubishielectric Search vendor "Mitsubishielectric" | Got2000 Gt27 Firmware Search vendor "Mitsubishielectric" for product "Got2000 Gt27 Firmware" | <= 01.39.000 Search vendor "Mitsubishielectric" for product "Got2000 Gt27 Firmware" and version " <= 01.39.000" | - |
Affected
| in | Mitsubishielectric Search vendor "Mitsubishielectric" | Got2000 Gt27 Search vendor "Mitsubishielectric" for product "Got2000 Gt27" | - | - |
Safe
|
Mitsubishielectric Search vendor "Mitsubishielectric" | Got2000 Gt25 Firmware Search vendor "Mitsubishielectric" for product "Got2000 Gt25 Firmware" | <= 01.39.000 Search vendor "Mitsubishielectric" for product "Got2000 Gt25 Firmware" and version " <= 01.39.000" | - |
Affected
| in | Mitsubishielectric Search vendor "Mitsubishielectric" | Got2000 Gt25 Search vendor "Mitsubishielectric" for product "Got2000 Gt25" | - | - |
Safe
|
Mitsubishielectric Search vendor "Mitsubishielectric" | Got2000 Gt23 Firmware Search vendor "Mitsubishielectric" for product "Got2000 Gt23 Firmware" | <= 01.39.000 Search vendor "Mitsubishielectric" for product "Got2000 Gt23 Firmware" and version " <= 01.39.000" | - |
Affected
| in | Mitsubishielectric Search vendor "Mitsubishielectric" | Got2000 Gt23 Search vendor "Mitsubishielectric" for product "Got2000 Gt23" | - | - |
Safe
|