Security Advisory
CVE-2020-5599
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model) contains an improper neutralization of argument delimiters in a command (Argument Injection) vulnerability, which may allow a remote attacker to stop the network functions of the products or execute a malicious program via a specially crafted packet.