CVE-2022-40267

CRITICALCVSS 9.1/10EPSS 1.18%

Last modified

CVE-2022-40267 is a critical-severity vulnerability rated 9.1/10 on the CVSS scale. Predictable Seed in Pseudo-Random Number Generator (PRNG) vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5U-xMy/z (x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number 17X**** or later, and versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5U-xMy/z (x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number 179**** and prior, and versions 1.074 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-xMy/z (x=32,64,96, y=T, z=D,DSS)) with serial number 17X**** or later, and versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-xMy/z (x=32,64,96, y=T, z=D,DSS)) with serial number 179**** and prior, and versions 1.074 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-32MT/DS-TS versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-32MT/DSS-TS versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UJ-xMy/z (x=24,40,60, y=T,R, z=ES,ESS) versions 1.042 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UJ-xMy/ES-A (x=24,40,60, y=T,R) versions 1.043 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5S-xMy/z (x=30,40,60,80, y=T,R, z=ES,ESS) versions 1.003 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-32MR/DS-TS versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R00/01/02CPU versions 33 and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R04/08/16/32/120(EN)CPU versions 66 and prior allows a remote unauthenticated attacker to access the Web server function by guessing the random numbers used for authentication from several used random numbers.. EPSS estimates a 1.18% chance of exploitation in the next 30 days.

Description

Predictable Seed in Pseudo-Random Number Generator (PRNG) vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5U-xMy/z (x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number 17X**** or later, and versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5U-xMy/z (x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number 179**** and prior, and versions 1.074 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-xMy/z (x=32,64,96, y=T, z=D,DSS)) with serial number 17X**** or later, and versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-xMy/z (x=32,64,96, y=T, z=D,DSS)) with serial number 179**** and prior, and versions 1.074 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-32MT/DS-TS versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-32MT/DSS-TS versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UJ-xMy/z (x=24,40,60, y=T,R, z=ES,ESS) versions 1.042 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UJ-xMy/ES-A (x=24,40,60, y=T,R) versions 1.043 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5S-xMy/z (x=30,40,60,80, y=T,R, z=ES,ESS) versions 1.003 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-32MR/DS-TS versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R00/01/02CPU versions 33 and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R04/08/16/32/120(EN)CPU versions 66 and prior allows a remote unauthenticated attacker to access the Web server function by guessing the random numbers used for authentication from several used random numbers.

Metrics

CVSS 3.1
9.1/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

EPSS Probability
1.18%

63.8th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
MitsubishielectricFx5u-80mt\/Ess FirmwareAll versions
MitsubishielectricFx5u-32mt\/Dss FirmwareAll versions
MitsubishielectricFx5u-64mt\/Dss FirmwareAll versions
MitsubishielectricFx5u-80mt\/Dss FirmwareAll versions
MitsubishielectricFx5uc-32mt\/D FirmwareAll versions
MitsubishielectricFx5uc-64mt\/D FirmwareAll versions
MitsubishielectricFx5uc-96mt\/D FirmwareAll versions
MitsubishielectricFx5uc-32mt\/Dss FirmwareAll versions
MitsubishielectricFx5uc-64mt\/Dss FirmwareAll versions
MitsubishielectricFx5uc-96mt\/Dss FirmwareAll versions
MitsubishielectricFx5uc-32mt\/Ds-Ts Firmware< 1.280
MitsubishielectricFx5uc-32mt\/Dss-Ts Firmware< 1.280
MitsubishielectricFx5uc-32mr\/Ds-Ts Firmware< 1.280
MitsubishielectricR00cpu FirmwareAll versions
MitsubishielectricR01cpu FirmwareAll versions
MitsubishielectricR02cpu FirmwareAll versions
MitsubishielectricR04cpu FirmwareAll versions
MitsubishielectricR08cpu FirmwareAll versions
MitsubishielectricR16cpu FirmwareAll versions
MitsubishielectricR32cpu FirmwareAll versions
MitsubishielectricR120cpu FirmwareAll versions
MitsubishielectricR04encpu FirmwareAll versions
MitsubishielectricR08encpu FirmwareAll versions
MitsubishielectricR16encpu FirmwareAll versions
MitsubishielectricR32encpu FirmwareAll versions
MitsubishielectricR120encpu FirmwareAll versions
MitsubishielectricFx5uj-24mt\/Es Firmware< 1.042
MitsubishielectricFx5uj-40mt\/Es Firmware< 1.042
MitsubishielectricFx5uj-60mt\/Es Firmware< 1.042
MitsubishielectricFx5uj-24mr\/Es Firmware< 1.042
MitsubishielectricFx5uj-40mr\/Es Firmware< 1.042
MitsubishielectricFx5uj-60mr\/Es Firmware< 1.042
MitsubishielectricFx5uj-24mt\/Ess Firmware< 1.042
MitsubishielectricFx5uj-40mt\/Ess Firmware< 1.042
MitsubishielectricFx5uj-60mt\/Ess Firmware< 1.042
MitsubishielectricFx5uj-24mt\/Es-A Firmware< 1.043
MitsubishielectricFx5uj-40mt\/Es-A Firmware< 1.043
MitsubishielectricFx5uj-60mt\/Es-A Firmware< 1.043
MitsubishielectricFx5uj-24mr\/Es-A Firmware< 1.043
MitsubishielectricFx5uj-40mr\/Es-A Firmware< 1.043
MitsubishielectricFx5uj-60mr\/Es-A Firmware< 1.043
MitsubishielectricFx5s-30mt\/Es Firmware< 1.003
MitsubishielectricFx5s-40mt\/Es Firmware< 1.003
MitsubishielectricFx5s-60mt\/Es Firmware< 1.003
MitsubishielectricFx5s-80mt\/Es Firmware< 1.003
MitsubishielectricFx5s-30mr\/Es Firmware< 1.003
MitsubishielectricFx5s-40mr\/Es Firmware< 1.003
MitsubishielectricFx5s-60mr\/Es Firmware< 1.003
MitsubishielectricFx5s-80mr\/Es Firmware< 1.003
MitsubishielectricFx5s-30mt\/Ess Firmware< 1.003

Showing 50 of 53 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2022-40267?
Predictable Seed in Pseudo-Random Number Generator (PRNG) vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5U-xMy/z (x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number 17X**** or later, and versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5U-xMy/z (x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number 179**** and prior, and versions 1.074 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-xMy/z (x=32,64,96, y=T, z=D,DSS)) with serial number 17X**** or later, and versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-xMy/z (x=32,64,96, y=T, z=D,DSS)) with serial number 179**** and prior, and versions 1.074 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-32MT/DS-TS versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-32MT/DSS-TS versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UJ-xMy/z (x=24,40,60, y=T,R, z=ES,ESS) versions 1.042 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UJ-xMy/ES-A (x=24,40,60, y=T,R) versions 1.043 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5S-xMy/z (x=30,40,60,80, y=T,R, z=ES,ESS) versions 1.003 and prior, Mitsubishi Electric Corporation MELSEC iQ-F Series FX5UC-32MR/DS-TS versions 1.280 and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R00/01/02CPU versions 33 and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R04/08/16/32/120(EN)CPU versions 66 and prior allows a remote unauthenticated attacker to access the Web server function by guessing the random numbers used for authentication from several used random numbers.
How severe is CVE-2022-40267?
CVE-2022-40267 has a CVSS score of 9.1/10 (CRITICAL severity). The EPSS model estimates a 1.18% probability of exploitation in the next 30 days.
How do I fix CVE-2022-40267?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2022-40267?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST