ZeroHour

CVE-2020-5527

CVSS 3.1
7.5 high
EPSS
1%p70
Published
()
Modified
Description

When MELSOFT transmission port (UDP/IP) of Mitsubishi Electric MELSEC iQ-R series (all versions), MELSEC iQ-F series (all versions), MELSEC Q series (all versions), MELSEC L series (all versions), and MELSEC F series (all versions) receives massive amount of data via unspecified vectors, resource consumption occurs and the port does not process the data properly. As a result, it may fall into a denial-of-service (DoS) condition. The vendor states this vulnerability only affects Ethernet communication functions.

Vendors
mitsubishielectric
Products
cr800-q firmware, fx3g firmware, fx3gc firmware, fx3s firmware, fx3u firmware, fx3uc firmware, fx5u firmware, fx5uc firmware, fx5uj firmware, l02cpu firmware, l02cpu-p firmware, l02scpu firmware
Weakness
CWE-400
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.