Vulnerability CVE-2023-2846


Published: 2023-06-30

Description:
Authentication Bypass by Capture-replay vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series main modules allows a remote unauthenticated attacker to cancel the password/keyword setting and login to the affected products by sending specially crafted packets.

 References:
https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2023-005_en.pdf
https://www.cisa.gov/news-events/ics-advisories/icsa-23-180-04
https://jvn.jp/vu/JVNVU94519952

Copyright 2026, cxsecurity.com

 

Back to Top