CVE-2020-5647
Summary
| CVE | CVE-2020-5647 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-11-06 03:15:00 UTC |
| Updated | 2020-11-20 17:17:00 UTC |
| Description | Improper access control vulnerability in TCP/IP function included in the firmware of GT14 Model of GOT 1000 series (GT1455-QTBDE CoreOS version ’05.65.00.BD’ and earlier, GT1450-QMBDE CoreOS version ’05.65.00.BD’ and earlier, GT1450-QLBDE CoreOS version ’05.65.00.BD’ and earlier, GT1455HS-QTBDE CoreOS version ’05.65.00.BD’ and earlier, and GT1450HS-QMBDE CoreOS version ’05.65.00.BD’ and earlier) allows a remote unauthenticated attacker to stop the network functions of the products or execute a malicious program via a specially crafted packet. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Mitsubishielectric | Coreos | All | All | All | All |
| Hardware | Mitsubishielectric | Gt1450-qlbde | - | All | All | All |
| Hardware | Mitsubishielectric | Gt1450-qlbde | - | All | All | All |
| Hardware | Mitsubishielectric | Gt1450-qmbde | - | All | All | All |
| Hardware | Mitsubishielectric | Gt1450-qmbde | - | All | All | All |
| Hardware | Mitsubishielectric | Gt1450hs-qmbde | - | All | All | All |
| Hardware | Mitsubishielectric | Gt1450hs-qmbde | - | All | All | All |
| Hardware | Mitsubishielectric | Gt1455-qtbde | - | All | All | All |
| Hardware | Mitsubishielectric | Gt1455-qtbde | - | All | All | All |
| Hardware | Mitsubishielectric | Gt1455hs-qtbde | - | All | All | All |
| Hardware | Mitsubishielectric | Gt1455hs-qtbde | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| www.mitsubishielectric.co.jp/psirt/vulnerability/pdf/2020-014.pdf | MISC | www.mitsubishielectric.co.jp | Vendor Advisory |
| Mitsubishi Electric GT14 Model of GOT1000 Series | CISA | MISC | us-cert.cisa.gov | Third Party Advisory, US Government Resource |
| www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2020-014_en.pdf | MISC | www.mitsubishielectric.com | Vendor Advisory |
| JVNVU#99562395: 三菱電機製 GOT1000 シリーズ GT14 モデルにおける複数の脆弱性 | MISC | jvn.jp | Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 590648 Mitsubishi Electric GT14 Model of GOT1000 Series Multiple Vulnerabilities (ICSA-20-310-02)