Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 87 respecto a la semana anterior
Críticas / altas1458▲ 97 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
18 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.7) | 0.64% | — | Mitsubishielectric Melsec Iq-f Series Fx5-enet/ipAI | 19/6/2026 | 22/6/2026 | Expected Behavior Violation vulnerability in Mitsubishi Electric MELSEC iQ-F Series FX5-ENET/IP Ethernet Module FX5-ENET/IP all versions allows a remote attacker to cause a denial-of-service (DoS) condition in the affected product by continuously sending a large number of communication packets to the Ethernet port of… | |
| Aplazada | Alta (8.7) | 0.64% | — | Mitsubishielectric Melsec Iq-f Series Fx5-eipAI | 19/6/2026 | 22/6/2026 | Integer Overflow or Wraparound vulnerability in the EtherNet/IP function of Mitsubishi Electric MELSEC iQ-F Series FX5-EIP EtherNet/IP module FX5-EIP versions 1.000 and prior allows a remote attacker to cause a denial-of-service (DoS) condition in the affected product by rapidly establishing a large number of TCP… | |
| Analizada | Alta (8.7) | 0.43% | — | Mitsubishielectric Melsec Iq-f Fx5-enet/ip Firmware | 3/3/2026 | 17/6/2026 | Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-ENET/IP Ethernet Module FX5-ENET/IP all versions allows a remote attacker to cause a denial-of-service (DoS) condition on the products by continuously sending UDP packets to the products. A system reset of the… | |
| Analizada | Alta (8.7) | 0.43% | — | Mitsubishielectric Melsec Iq-f Fx5-eip Firmware | 3/3/2026 | 17/6/2026 | Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-EIP EtherNet/IP Module FX5-EIP versions 1.000 and prior allows a remote attacker to cause a denial-of-service (DoS) condition on the products by continuously sending UDP packets to the products. A system reset… | |
| Analizada | Alta (8.7) | 0.43% | — | Mitsubishielectric Melsec Iq-f Fx5-eip FirmwareMitsubishielectric Melsec Iq-f Fx5-enet/ip Firmware | 3/3/2026 | 17/6/2026 | Always-Incorrect Control Flow Implementation vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-ENET/IP Ethernet Module FX5-ENET/IP versions 1.106 and prior and Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-EIP EtherNet/IP Module FX5-EIP versions 1.000 and prior allows a remote attacker… | |
| Aplazada | Media (5.3) | 0.42% | — | Mitsubishi Electric Corporation Melsec Iq-f Series CPU ModuleAI | 6/11/2025 | 17/6/2026 | Improper Validation of Specified Quantity in Input vulnerability in TCP Communication Function on Mitsubishi Electric Corporation MELSEC iQ-F Series CPU module allows a remote attacker to disconnect the connection by sending specially crafted TCP packets to cause a denial-of-service (DoS) condition on the products.… | |
| Aplazada | Alta (7.5) | 0.33% | — | Mitsubishielectric Melsec Iq-fAI | 1/9/2025 | 17/6/2026 | Cleartext Transmission of Sensitive Information vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU module allows a remote unauthenticated attacker to obtain credential information by intercepting SLMP communication messages, and read or write the device values of the product and stop the… | |
| Aplazada | Alta (7.3) | 0.46% | — | Mitsubishi Electric Corporation Melsec Iq-f Series CPU ModuleAI | 1/9/2025 | 17/6/2026 | Missing Authentication for Critical Function vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU module allows a remote unauthenticated attacker to read or write the device values of the product and stop the operation of the programs, since MODBUS/TCP in the products does not have authentication… | |
| Aplazada | Media (5.3) | 0.58% | — | Mitsubishielectric Melsec Iq-fAI | 25/8/2025 | 17/6/2026 | Improper Handling of Length Parameter Inconsistency vulnerability in web server function on Mitsubishi Electric Corporation MELSEC iQ-F Series CPU module allows a remote unauthenticated attacker to delay the processing of the web server function and prevent legitimate users from utilizing the web server function, by… | |
| Aplazada | Media (5.3) | 0.42% | — | Mitsubishielectric Melsec Iq-fAI | 11/7/2025 | 17/6/2026 | Overly Restrictive Account Lockout Mechanism vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series allows a remote unauthenticated attacker to lockout legitimate users for a certain period by repeatedly attempting to login with incorrect passwords. The legitimate users will be unable to login until a… | |
| Aplazada | Crítica (9.1) | 0.83% | — | Mitsubishi Electric Corporation Melsec Iq-f Series CPU ModulesAI | 29/5/2025 | 17/6/2026 | Improper Validation of Specified Index, Position, or Offset in Input vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU modules allows a remote unauthenticated attacker to read information in the product, to cause a Denial-of-Service (DoS) condition in MELSOFT connection, or to stop the operation… | |
| Aplazada | Alta (7.5) | 0.91% | — | Mitsubishielectric Cc-link IE TSN Remote IO ModuleAIMitsubishielectric Cc-link IE TSN Analog-digital Converter ModuleAIMitsubishielectric Cc-link IE TSN Digital-analog Converter ModuleAIMitsubishielectric Cc-link IE TSN Fpga ModuleAI+8 | 25/4/2025 | 27/8/2026 | Improper Validation of Specified Quantity in Input vulnerability in Mitsubishi Electric Corporation CC-Link IE TSN Remote I/O module, CC-Link IE TSN Analog-Digital Converter module, CC-Link IE TSN Digital-Analog Converter module, CC-Link IE TSN FPGA module, CC-Link IE TSN Remote Station Communication LSI CP620 with… | |
| Aplazada | Alta (7.5) | 0.68% | — | Mitsubishi Electric Corporation Melsec Iq-f Series Fx5-enetAIMitsubishi Electric Corporation Melsec Iq-f Series Fx5-enet IPAI | 19/11/2024 | 17/6/2026 | Improper Validation of Specified Type of Input vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-ENET versions 1.100 to 1.200 and FX5-ENET/IP versions 1.100 to 1.104 allows a remote attacker to cause a Denial of Service condition in Ethernet communication of the products by sending specially… | |
| Modificada | Alta (8.1) | 3.4% | — | Mitsubishielectric Melsec Iq-fx5u-32mr/ds FirmwareMitsubishielectric Melsec Iq-fx5u-32mr/dss FirmwareMitsubishielectric Melsec Iq-fx5u-32mr/es FirmwareMitsubishielectric Melsec Iq-fx5u-32mr/ess Firmware+35 | 24/5/2023 | 17/6/2026 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU modules and MELSEC iQ-R Series CPU modules allows a remote unauthenticated attacker to cause a denial of service (DoS) condition or execute malicious code on a target product… | |
| Modificada | Media (5.3) | 2.7% | — | Mitsubishielectric Melsec Iq-fx5u-32mt/es FirmwareMitsubishielectric Melsec Iq-fx5u-32mt/ds FirmwareMitsubishielectric Melsec Iq-fx5u-32mt/ess FirmwareMitsubishielectric Melsec Iq-fx5u-32mt/dss Firmware+93 | 18/5/2022 | 17/6/2026 | Improper Input Validation vulnerability in Mitsubishi Electric MELSEC iQ-F series FX5U-xMy/z(x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number 17X**** or later and versions prior to 1.270, Mitsubishi Electric Mitsubishi Electric MELSEC iQ-F series FX5U-xMy/z(x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number… | |
| Modificada | Alta (8.6) | 4.1% | — | Mitsubishielectric Melsec Iq-fx5u-32mt/es FirmwareMitsubishielectric Melsec Iq-fx5u-32mt/ds FirmwareMitsubishielectric Melsec Iq-fx5u-32mt/ess FirmwareMitsubishielectric Melsec Iq-fx5u-32mt/dss Firmware+93 | 18/5/2022 | 17/6/2026 | Improper Input Validation vulnerability in Mitsubishi Electric MELSEC iQ-F series FX5U-xMy/z(x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number 17X**** or later and versions prior to 1.270, Mitsubishi Electric Mitsubishi Electric MELSEC iQ-F series FX5U-xMy/z(x=32,64,80, y=T,R, z=ES,DS,ESS,DSS) with serial number… | |
| Modificada | Alta (7.4) | 1.0% | — | Mitsubishielectric Melsec Iq-f Fx5u CPU Firmware | 14/12/2020 | 17/6/2026 | Improper check or handling of exceptional conditions in MELSEC iQ-F series FX5U(C) CPU unit firmware version 1.060 and earlier allows an attacker to cause a denial-of-service (DoS) condition on program execution and communication by sending a specially crafted ARP packet. | |
| Modificada | Crítica (9.8) | 1.3% | — | Mitsubishielectric Melsec Iq-r FirmwareMitsubishielectric Melsec Iq-f FirmwareMitsubishielectric Melsec-q FirmwareMitsubishielectric Melsec-l Firmware+1 | 23/6/2020 | 17/6/2026 | Mitsubishi Electric MELSEC iQ-R, iQ-F, Q, L, and FX series CPU modules all versions contain a vulnerability that allows cleartext transmission of sensitive information between CPU modules and GX Works3 and/or GX Works2 via unspecified vectors. |