CVE-2022-40268
CVE-2022-40268
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 6.1EPSS 0.5%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
02 feb 2023Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Improper Restriction of Rendered UI Layers or Frames vulnerability in Mitsubishi Electric Corporation GOT2000 Series GT27 model versions 01.14.000 to 01.47.000, Mitsubishi Electric Corporation GOT2000 Series GT25 model versions 01.14.000 to 01.47.000 and Mitsubishi Electric Corporation GT SoftGOT2000 versions 1.265B to 1.285X allows a remote unauthenticated attacker to lead legitimate users to perform unintended operations through clickjacking.
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:N/I:H/A:N
Productos afectados
Mitsubishi Electric Corporation · GOT2000 Series GT25 modelMitsubishi Electric Corporation · GOT2000 Series GT27 modelMitsubishi Electric Corporation · GT SoftGOT2000¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →