Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2989▼ 87 respecto a la semana anterior
Críticas / altas1458▲ 97 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
–

18 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaAlta (8.7)0.64%—Mitsubishielectric Melsec Iq-f Series Fx5-enet/ipAI19/6/202622/6/2026
Expected Behavior Violation vulnerability in Mitsubishi Electric MELSEC iQ-F Series FX5-ENET/IP Ethernet Module FX5-ENET/IP all versions allows a remote attacker to cause a denial-of-service (DoS) condition in the affected product by continuously sending a large number of communication packets to the Ethernet port of…
AplazadaAlta (8.7)0.64%—Mitsubishielectric Melsec Iq-f Series Fx5-eipAI19/6/202622/6/2026
Integer Overflow or Wraparound vulnerability in the EtherNet/IP function of Mitsubishi Electric MELSEC iQ-F Series FX5-EIP EtherNet/IP module FX5-EIP versions 1.000 and prior allows a remote attacker to cause a denial-of-service (DoS) condition in the affected product by rapidly establishing a large number of TCP…
AnalizadaAlta (8.7)0.43%—Mitsubishielectric Melsec Iq-f Fx5-enet/ip Firmware3/3/202617/6/2026
Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-ENET/IP Ethernet Module FX5-ENET/IP all versions allows a remote attacker to cause a denial-of-service (DoS) condition on the products by continuously sending UDP packets to the products. A system reset of the…
AnalizadaAlta (8.7)0.43%—Mitsubishielectric Melsec Iq-f Fx5-eip Firmware3/3/202617/6/2026
Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-EIP EtherNet/IP Module FX5-EIP versions 1.000 and prior allows a remote attacker to cause a denial-of-service (DoS) condition on the products by continuously sending UDP packets to the products. A system reset…
AnalizadaAlta (8.7)0.43%—Mitsubishielectric Melsec Iq-f Fx5-eip FirmwareMitsubishielectric Melsec Iq-f Fx5-enet/ip Firmware3/3/202617/6/2026
Always-Incorrect Control Flow Implementation vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-ENET/IP Ethernet Module FX5-ENET/IP versions 1.106 and prior and Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-EIP EtherNet/IP Module FX5-EIP versions 1.000 and prior allows a remote attacker…
AplazadaMedia (5.3)0.42%—Mitsubishi Electric Corporation Melsec Iq-f Series CPU ModuleAI6/11/202517/6/2026
Improper Validation of Specified Quantity in Input vulnerability in TCP Communication Function on Mitsubishi Electric Corporation MELSEC iQ-F Series CPU module allows a remote attacker to disconnect the connection by sending specially crafted TCP packets to cause a denial-of-service (DoS) condition on the products.…
AplazadaAlta (7.5)0.33%—Mitsubishielectric Melsec Iq-fAI1/9/202517/6/2026
Cleartext Transmission of Sensitive Information vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU module allows a remote unauthenticated attacker to obtain credential information by intercepting SLMP communication messages, and read or write the device values of the product and stop the…
AplazadaAlta (7.3)0.46%—Mitsubishi Electric Corporation Melsec Iq-f Series CPU ModuleAI1/9/202517/6/2026
Missing Authentication for Critical Function vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU module allows a remote unauthenticated attacker to read or write the device values of the product and stop the operation of the programs, since MODBUS/TCP in the products does not have authentication…
AplazadaMedia (5.3)0.58%—Mitsubishielectric Melsec Iq-fAI25/8/202517/6/2026
Improper Handling of Length Parameter Inconsistency vulnerability in web server function on Mitsubishi Electric Corporation MELSEC iQ-F Series CPU module allows a remote unauthenticated attacker to delay the processing of the web server function and prevent legitimate users from utilizing the web server function, by…
AplazadaMedia (5.3)0.42%—Mitsubishielectric Melsec Iq-fAI11/7/202517/6/2026
Overly Restrictive Account Lockout Mechanism vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series allows a remote unauthenticated attacker to lockout legitimate users for a certain period by repeatedly attempting to login with incorrect passwords. The legitimate users will be unable to login until a…
AplazadaCrítica (9.1)0.83%—Mitsubishi Electric Corporation Melsec Iq-f Series CPU ModulesAI29/5/202517/6/2026
Improper Validation of Specified Index, Position, or Offset in Input vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU modules allows a remote unauthenticated attacker to read information in the product, to cause a Denial-of-Service (DoS) condition in MELSOFT connection, or to stop the operation…
AplazadaAlta (7.5)0.91%—Mitsubishielectric Cc-link IE TSN Remote IO ModuleAIMitsubishielectric Cc-link IE TSN Analog-digital Converter ModuleAIMitsubishielectric Cc-link IE TSN Digital-analog Converter ModuleAIMitsubishielectric Cc-link IE TSN Fpga ModuleAI+825/4/202527/8/2026
Improper Validation of Specified Quantity in Input vulnerability in Mitsubishi Electric Corporation CC-Link IE TSN Remote I/O module, CC-Link IE TSN Analog-Digital Converter module, CC-Link IE TSN Digital-Analog Converter module, CC-Link IE TSN FPGA module, CC-Link IE TSN Remote Station Communication LSI CP620 with…
AplazadaAlta (7.5)0.68%—Mitsubishi Electric Corporation Melsec Iq-f Series Fx5-enetAIMitsubishi Electric Corporation Melsec Iq-f Series Fx5-enet IPAI19/11/202417/6/2026
Improper Validation of Specified Type of Input vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-ENET versions 1.100 to 1.200 and FX5-ENET/IP versions 1.100 to 1.104 allows a remote attacker to cause a Denial of Service condition in Ethernet communication of the products by sending specially…
ModificadaAlta (8.1)3.4%—Mitsubishielectric Melsec Iq-fx5u-32mr/ds FirmwareMitsubishielectric Melsec Iq-fx5u-32mr/dss FirmwareMitsubishielectric Melsec Iq-fx5u-32mr/es FirmwareMitsubishielectric Melsec Iq-fx5u-32mr/ess Firmware+3524/5/202317/6/2026
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU modules and MELSEC iQ-R Series CPU modules allows a remote unauthenticated attacker to cause a denial of service (DoS) condition or execute malicious code on a target product…
ModificadaMedia (5.3)2.7%—Mitsubishielectric Melsec Iq-fx5u-32mt/es FirmwareMitsubishielectric Melsec Iq-fx5u-32mt/ds FirmwareMitsubishielectric Melsec Iq-fx5u-32mt/ess FirmwareMitsubishielectric Melsec Iq-fx5u-32mt/dss Firmware+9318/5/202217/6/2026
Improper Input Validation vulnerability in Mitsubishi Electric MELSEC iQ-F series FX5U-xMy/z(x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number 17X**** or later and versions prior to 1.270, Mitsubishi Electric Mitsubishi Electric MELSEC iQ-F series FX5U-xMy/z(x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number…
ModificadaAlta (8.6)4.1%—Mitsubishielectric Melsec Iq-fx5u-32mt/es FirmwareMitsubishielectric Melsec Iq-fx5u-32mt/ds FirmwareMitsubishielectric Melsec Iq-fx5u-32mt/ess FirmwareMitsubishielectric Melsec Iq-fx5u-32mt/dss Firmware+9318/5/202217/6/2026
Improper Input Validation vulnerability in Mitsubishi Electric MELSEC iQ-F series FX5U-xMy/z(x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number 17X**** or later and versions prior to 1.270, Mitsubishi Electric Mitsubishi Electric MELSEC iQ-F series FX5U-xMy/z(x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number…
ModificadaAlta (7.4)1.0%—Mitsubishielectric Melsec Iq-f Fx5u CPU Firmware14/12/202017/6/2026
Improper check or handling of exceptional conditions in MELSEC iQ-F series FX5U(C) CPU unit firmware version 1.060 and earlier allows an attacker to cause a denial-of-service (DoS) condition on program execution and communication by sending a specially crafted ARP packet.
ModificadaCrítica (9.8)1.3%—Mitsubishielectric Melsec Iq-r FirmwareMitsubishielectric Melsec Iq-f FirmwareMitsubishielectric Melsec-q FirmwareMitsubishielectric Melsec-l Firmware+123/6/202017/6/2026
Mitsubishi Electric MELSEC iQ-R, iQ-F, Q, L, and FX series CPU modules all versions contain a vulnerability that allows cleartext transmission of sensitive information between CPU modules and GX Works3 and/or GX Works2 via unspecified vectors.
Orbitaley — Vulnerabilidades