CVSS 3.1 Score 5.9 of 10 (medium)


Published Jan 30, 2024
Updated: Feb 6, 2024
CWE ID 294


CVE-2023-6374 is a vulnerability that affects the Mitsubishi Electric Corporation MELSEC WS Series WS0-GETH00200, all serial numbers. It is classified as an Authentication Bypass by Capture-replay vulnerability. This vulnerability allows a remote unauthenticated attacker to bypass authentication through a capture-replay attack, enabling them to illegally log in to the affected module. As a result, the attacker may be able to disclose or tamper with the programs and parameters in the modules. The base severity of this vulnerability is rated as MEDIUM, with an exploitability score of 2.2 out of 10. To remediate this vulnerability, it is recommended to implement appropriate security measures and updates provided by Mitsubishi Electric Corporation.

Explore Beyond the CVE Basics with Recorded Future's Vulnerability Intelligence

Note: This is just a basic overview providing quick insights into CVE-2023-6374 information. Gain full access to comprehensive CVE data, risk scores, prioritization, and mitigation data through Recorded Future's Vulnerability Intelligence:
  • Prioritize with Risk-Based Scoring
  • Explore the Extensive Vulnerability Database
  • Receive Early Alerts on Emerging CVEs
  • Focus on Critical Exploitable Vulnerabilities
  • Streamline Remediation with Integration Options