CVE-2022-40267
Published: Jan 20, 2023
Modified: Aug 3, 2024
CVSS v3.1
5.9
Description
Predictable Seed in Pseudo-Random Number Generator (PRNG) vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5U-xMy/z (x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number 17X**** or later, and versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5U-xMy/z (x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number 179**** and prior, and versions 1.074 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-xMy/z (x=32,64,96, y=T, z=D,DSS)) with serial number 17X**** or later, and versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-xMy/z (x=32,64,96, y=T, z=D,DSS)) with serial number 179**** and prior, and versions 1.074 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-32MT/DS-TS versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-32MT/DSS-TS versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UJ-xMy/z (x=24,40,60, y=T,R, z=ES,ESS) versions 1.042 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UJ-xMy/ES-A (x=24,40,60, y=T,R) versions 1.043 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5S-xMy/z (x=30,40,60,80, y=T,R, z=ES,ESS) versions 1.003 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-32MR/DS-TS versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R00/01/02CPU versions 33 and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R04/08/16/32/120(EN)CPU versions 66 and prior allows a remote unauthenticated attacker to access the Web server function by guessing the random numbers used for authentication from several used random numbers.
| Vendor | Product | Versions |
|---|---|---|
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-32MT/ES | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-64MT/ES | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Seres FX5U-80MT/ES | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-32MR/ES | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-64MR/ES | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-80MR/ES | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-32MT/DS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-64MT/DS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-80MT/DS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-32MR/DS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-64MR/DS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-80MR/DS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-32MT/ESS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-64MT/ESS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-80MT/ESS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-32MT/DSS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-64MT/DSS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5U-80MT/DSS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UC-32MT/D | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UC-64MT/D | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UC-96MT/D | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UC-32MT/DSS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UC-64MT/DSS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UC-96MT/DSS | affected serial number 17X**** or later, and versions 1.280 and prioraffected serial number 179**** and prior, and versions 1.074 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UC-32MT/DS-TS | affected versions 1.280 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UC-32MT/DSS-TS | affected versions 1.280 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UC-32MR/DS-TS | affected versions 1.280 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-R Series R00CPU | affected versions 33 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-R Series R01CPU | affected versions 33 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-R Series R02CPU | affected versions 33 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-R Series R04CPU | affected versions 66 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-R Series R08CPU | affected versions 66 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-R Series R16CPU | affected versions 66 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-R Series R32CPU | affected versions 66 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-R Series R120CPU | affected versions 66 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-R Series R04ENCPU | affected versions 66 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-R Series R08ENCPU | affected versions 66 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-R Series R16ENCPU | affected versions 66 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-R Series R32ENCPU | affected versions 66 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-R Series R120ENCPU | affected versions 66 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-24MT/ES | affected 1.042 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-40MT/ES | affected 1.042 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-60MT/ES | affected 1.042 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-24MR/ES | affected 1.042 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-40MR/ES | affected 1.042 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-60MR/ES | affected 1.042 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-24MT/ESS | affected 1.042 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-40MT/ESS | affected 1.042 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-60MT/ESS | affected 1.042 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-24MT/ES-A | affected 1.043 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-40MT/ES-A | affected 1.043 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-60MT/ES-A | affected 1.043 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-24MR/ES-A | affected 1.043 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-40MR/ES-A | affected 1.043 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5UJ-60MR/ES-A | affected 1.043 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5S-30MT/ES | affected 1.003 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5S-40MT/ES | affected 1.003 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5S-60MT/ES | affected 1.003 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5S-80MT/ES | affected 1.003 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5S-30MR/ES | affected 1.003 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5S-40MR/ES | affected 1.003 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5S-60MR/ES | affected 1.003 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5S-80MR/ES | affected 1.003 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5S-30MT/ESS | affected 1.003 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5S-40MT/ESS | affected 1.003 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5S-60MT/ESS | affected 1.003 and prior |
Mitsubishi Electric Corporation | MELSEC iQ-F Series FX5S-80MT/ESS | affected 1.003 and prior |
Weaknesses (CWE)
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now