AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-40268

MEDIUM · CVSS 6.1 EPSS 0.46%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-02-02 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.1. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.

CVE
CVE-2022-40268
Severity
MEDIUM
CVSS
6.1
EPSS
0.46%

Original NVD Description

Improper Restriction of Rendered UI Layers or Frames vulnerability in Mitsubishi Electric Corporation GOT2000 Series GT27 model versions 01.14.000 to 01.47.000, Mitsubishi Electric Corporation GOT2000 Series GT25 model versions 01.14.000 to 01.47.000 and Mitsubishi Electric Corporation GT SoftGOT2000 versions 1.265B to 1.285X allows a remote unauthenticated attacker to lead legitimate users to perform unintended operations through clickjacking.

Related CVEs

Other vulnerabilities affecting the same vendor(s)