Security Advisory

CVE-2021-20598

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-08-06 16:53:47
Last updated 2024-08-03 17:45:44
Assigner Mitsubishi
State PUBLISHED

Description

Overly Restrictive Account Lockout Mechanism vulnerability in Mitsubishi Electric MELSEC iQ-R series CPU modules (R08/16/32/120SFCPU all versions, R08/16/32/120PSFCPU all versions) allows a remote unauthenticated attacker to lockout a legitimate user by continuously trying login with incorrect password.