CVE-2020-5599: Critical severity mitsubishi electric coreos vulnerability
TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model) contains an improper neutralization of argument delimiters in a command ('Argument Injection') vulnerability, which may allow a remote attacker to stop the network functions of the products or execute a malicious program via a specially crafted packet.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-5599?
CVE-2020-5599 is a vulnerability in the TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series.
How severe is CVE-2020-5599?
CVE-2020-5599 has a severity rating of 9.8 (Critical).
What is the affected software for CVE-2020-5599?
The affected software for CVE-2020-5599 is the CoreOS with version -Y installed in GT27 Model, GT25 Model, and GT23 Model of Mitsubishi Electric GOT2000 series.
How can the CVE-2020-5599 vulnerability be exploited?
CVE-2020-5599 can be exploited through improper neutralization of argument delimiters in a command ('Argument Injection').
Where can I find more information about CVE-2020-5599?
You can find more information about CVE-2020-5599 at the Japanese Vulnerability Notes (JVN) website and the Mitsubishi Electric Product Security Incident Response Team (PSIRT) website.