VYPR

Iu1 1m20 D Firmware

by Mitsubishielectric

CVEs (7)

  • CVE-2020-16226CriOct 5, 2020
    risk 0.64cvss 9.8epss 0.02

    Multiple Mitsubishi Electric products are vulnerable to impersonations of a legitimate device by a malicious actor, which may allow an attacker to remotely execute arbitrary commands.

  • CVE-2020-5547CriMar 16, 2020
    risk 0.64cvss 9.8epss 0.02

    Resource Management Errors vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and earlier allows remote attackers to stop the network functions or execute malware via a specially crafted packet.

  • CVE-2020-5545CriMar 16, 2020
    risk 0.64cvss 9.8epss 0.02

    TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and earlier allows remote attackers to bypass access restriction and to stop the network functions or execute malware via a specially crafted packet.

  • CVE-2020-5544CriMar 16, 2020
    risk 0.64cvss 9.8epss 0.02

    Null Pointer Dereference vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and earlier allows remote attackers to stop the network functions or execute malware via a specially crafted packet.

  • CVE-2020-5543CriMar 16, 2020
    risk 0.64cvss 9.8epss 0.02

    TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and earlier does not properly manage sessions, which allows remote attackers to stop the network functions or execute malware via a specially crafted packet.

  • CVE-2020-5542CriMar 16, 2020
    risk 0.64cvss 9.8epss 0.02

    Buffer error vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and earlier allows remote attackers to stop the network functions or execute malware via a specially crafted packet.

  • CVE-2020-5546HigMar 16, 2020
    risk 0.57cvss 8.8epss 0.01

    Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and earlier allows an attacker on the same network segment to stop…