CVE-2020-5599: Mitsubishielectric Coreos
Critical severity, CVSS 9.8. EPSS: 3.5% chance of exploitation in the next 30 days.
TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model) contains an improper neutralization of argument delimiters in a command ('Argument Injection') vulnerability, which may allow a remote attacker to stop the network functions of the products or execute a malicious program via a specially crafted packet.
Affected products
- Mitsubishielectric Coreos: up to and including y
Published 2020-07-07. Last modified 2026-06-17.