Medium severity5.9NVD Advisory· Published Jan 30, 2024· Updated Jun 17, 2026
CVE-2023-6374
CVE-2023-6374
Description
Authentication Bypass by Capture-replay vulnerability in Mitsubishi Electric Corporation MELSEC WS Series WS0-GETH00200 all serial numbers allows a remote unauthenticated attacker to bypass authentication by capture-replay attack and illegally login to the affected module. As a result, the remote attacker who has logged in illegally may be able to disclose or tamper with the programs and parameters in the modules.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:o:mitsubishielectric:melsec_ws0-geth00200_firmware:-:*:*:*:*:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: All serial numbers
Patches
Vulnerability mechanics
References
3- jvn.jp/vu/JVNVU99497477nvdThird Party Advisory
- www.cisa.gov/news-events/ics-advisories/icsa-24-030-03nvdThird Party AdvisoryUS Government Resource
- www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2023-019_en.pdfnvdVendor Advisory
News mentions
0No linked articles in our index yet.