CVE-2020-5527
—CVSS 3.1
7.5 high
EPSS
1%p70
Published
()
Modified
Description
When MELSOFT transmission port (UDP/IP) of Mitsubishi Electric MELSEC iQ-R series (all versions), MELSEC iQ-F series (all versions), MELSEC Q series (all versions), MELSEC L series (all versions), and MELSEC F series (all versions) receives massive amount of data via unspecified vectors, resource consumption occurs and the port does not process the data properly. As a result, it may fall into a denial-of-service (DoS) condition. The vendor states this vulnerability only affects Ethernet communication functions.
- Vendors
- mitsubishielectric
- Products
- cr800-q firmware, fx3g firmware, fx3gc firmware, fx3s firmware, fx3u firmware, fx3uc firmware, fx5u firmware, fx5uc firmware, fx5uj firmware, l02cpu firmware, l02cpu-p firmware, l02scpu firmware
- Weakness
- CWE-400
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
In the news0 stories
No ingested article mentions this CVE yet.