CVE-2022-33323

EUVD-2022-36366
Active Debug Code vulnerability in robot controller of Mitsubishi Electric Corporation industrial robot MELFA SD/SQ Series and MELFA F-Series allows a remote unauthenticated attacker to gain unauthorized access by authentication bypass through an unauthorized telnet login. As for the affected model names, controller types and firmware versions, see the Mitsubishi Electric's advisory which is listed in [References] section.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
MitsubishiCNA
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 77%
Affected Products (NVD)
VendorProductVersion
mitsubishielectricrh-12sdh55_firmware
-
mitsubishielectricrh-12sdh70_firmware
-
mitsubishielectricrh-12sdh85_firmware
-
mitsubishielectricrh-12sqh55_firmware
-
mitsubishielectricrh-12sqh70_firmware
-
mitsubishielectricrh-12sqh85_firmware
-
mitsubishielectricrh-20sdh100_firmware
-
mitsubishielectricrh-20sdh85_firmware
-
mitsubishielectricrh-20sqh85_firmware
-
mitsubishielectricrh-3sdhr_firmware
-
mitsubishielectricrh-3sqhr_firmware
-
mitsubishielectricrh-6sdh35_firmware
-
mitsubishielectricrh-6sdh45_firmware
-
mitsubishielectricrh-6sdh55_firmware
-
mitsubishielectricrh-6sqh35_firmware
-
mitsubishielectricrh-6sqh45_firmware
-
mitsubishielectricrh-6sqh55_firmware
-
mitsubishielectricrv-12sd_firmware
-
mitsubishielectricrv-12sdl_firmware
-
mitsubishielectricrv-12sq_firmware
-
mitsubishielectricrv-12sql_firmware
-
mitsubishielectricrv-2sdb_firmware
-
mitsubishielectricrv-2sqb_firmware
-
mitsubishielectricrv-3sd_firmware
-
mitsubishielectricrv-3sdj_firmware
-
mitsubishielectricrv-3sq_firmware
-
mitsubishielectricrv-3sqj_firmware
-
mitsubishielectricrv-6sd_firmware
-
mitsubishielectricrv-6sdl_firmware
-
mitsubishielectricrv-6sq_firmware
-
mitsubishielectricrv-6sql_firmware
-
mitsubishielectricrh-12fh55_firmware
-
mitsubishielectricrh-12fh70_firmware
-
mitsubishielectricrh-12fh85_firmware
-
mitsubishielectricrh-20fh100_firmware
-
mitsubishielectricrh-20fh85_firmware
-
mitsubishielectricrh-3fh35_firmware
-
mitsubishielectricrh-3fh45_firmware
-
mitsubishielectricrh-3fh55_firmware
-
mitsubishielectricrh-6fh35_firmware
-
mitsubishielectricrh-6fh45_firmware
-
mitsubishielectricrh-6fh55_firmware
-
mitsubishielectricrv-13f_firmware
-
mitsubishielectricrv-13fl_firmware
-
mitsubishielectricrv-20f_firmware
-
mitsubishielectricrv-2f_firmware
-
mitsubishielectricrv-4f_firmware
-
mitsubishielectricrv-4fl_firmware
-
mitsubishielectricrv-7f_firmware
-
mitsubishielectricrv-7fl_firmware
-
mitsubishielectricrv-7fll_firmware
-
𝑥
= Vulnerable software versions