Weak Password Requirements vulnerability in FTP function on Mitsubishi Electric Corporation MELSEC iQ-R Series EtherNet/IP module RJ71EIP91 and MELSEC iQ-F Series EtherNet/IP module FX5-ENET/IP allows a remote unauthenticated attacker to access to the module via FTP by dictionary attack or password sniffing.
https://www.darkreading.com/vulnerabilities-threats/critical-auth-bugs-smart-factory-cyberattack
https://www.mitsubishielectric.co.jp/psirt/vulnerability/pdf/2023-004.pdf