Tri Quach

Pesquisador deAmazon
#3499de 53,635
73.9CVSS total
Vulnerabilidades · 9
Média
2
Alta
4
Crítica
3
PT-2019-13417
5.9
2019-11-13
Mitsubishi · Melsec Q Series Q04/06/10/13/20/26/50/100Udehcpu · CVE-2019-13555
**Name of the Vulnerable Software and Affected Versions** Mitsubishi Electric MELSEC-Q Series Q03/04/06/13/26UDVCPU versions with serial number 21081 and prior Mitsubishi Electric MELSEC-Q Series Q04/06/13/26UDPVCPU versions with serial number 21081 and prior Mitsubishi Electric MELSEC-Q Series Q03UDECPU versions with serial number 21081 and prior Mitsubishi Electric MELSEC-Q Series Q04/06/10/13/20/26/50/100UDEHCPU versions with serial number 21081 and prior Mitsubishi Electric MELSEC-L Series L02/06/26CPU versions with serial number 21101 and prior Mitsubishi Electric MELSEC-L Series L26CPU-BT versions with serial number 21101 and prior Mitsubishi Electric MELSEC-L Series L02/06/26CPU-P versions with serial number 21101 and prior Mitsubishi Electric MELSEC-L Series L26CPU-PBT versions with serial number 21101 and prior Mitsubishi Electric MELSEC-L Series L02/06/26CPU-CM versions with serial number 21101 and prior Mitsubishi Electric MELSEC-L Series L26CPU-BT-CM versions with serial number 21101 and prior **Description** A remote attacker can cause the FTP service to enter a denial-of-service condition dependent on the timing at which a remote attacker connects to the FTP server on the above CPU modules. **Recommendations** For Mitsubishi Electric MELSEC-Q Series Q03/04/06/13/26UDVCPU with serial number 21081 and prior, consider disabling the FTP service until a patch is available. For Mitsubishi Electric MELSEC-Q Series Q04/06/13/26UDPVCPU with serial number 21081 and prior, consider disabling the FTP service until a patch is available. For Mitsubishi Electric MELSEC-Q Series Q03UDECPU with serial number 21081 and prior, consider disabling the FTP service until a patch is available. For Mitsubishi Electric MELSEC-Q Series Q04/06/10/13/20/26/50/100UDEHCPU with serial number 21081 and prior, consider disabling the FTP service until a patch is available. For Mitsubishi Electric MELSEC-L Series L02/06/26CPU with serial number 21101 and prior, consider disabling the FTP service until a patch is available. For Mitsubishi Electric MELSEC-L Series L26CPU-BT with serial number 21101 and prior, consider disabling the FTP service until a patch is available. For Mitsubishi Electric MELSEC-L Series L02/06/26CPU-P with serial number 21101 and prior, consider disabling the FTP service until a patch is available. For Mitsubishi Electric MELSEC-L Series L26CPU-PBT with serial number 21101 and prior, consider disabling the FTP service until a patch is available. For Mitsubishi Electric MELSEC-L Series L02/06/26CPU-CM with serial number 21101 and prior, consider disabling the FTP service until a patch is available. For Mitsubishi Electric MELSEC-L Series L26CPU-BT-CM with serial number 21101 and prior, consider disabling the FTP service until a patch is available.
PT-2019-18147
7.5
2019-02-05
Mitsubishi · Mitsubishi Electric Q26Udehcpu · CVE-2019-6535
**Name of the Vulnerable Software and Affected Versions** Mitsubishi Electric Q03UDVCPU versions serial number 20081 and prior Mitsubishi Electric Q04UDVCPU versions serial number 20081 and prior Mitsubishi Electric Q06UDVCPU versions serial number 20081 and prior Mitsubishi Electric Q13UDVCPU versions serial number 20081 and prior Mitsubishi Electric Q26UDVCPU versions serial number 20081 and prior Mitsubishi Electric Q03UDECPU versions serial number 20101 and prior Mitsubishi Electric Q04UDEHCPU versions serial number 20101 and prior Mitsubishi Electric Q06UDEHCPU versions serial number 20101 and prior Mitsubishi Electric Q10UDEHCPU versions serial number 20101 and prior Mitsubishi Electric Q13UDEHCPU versions serial number 20101 and prior Mitsubishi Electric Q20UDEHCPU versions serial number 20101 and prior Mitsubishi Electric Q26UDEHCPU versions serial number 20101 and prior Mitsubishi Electric Q50UDEHCPU versions serial number 20101 and prior Mitsubishi Electric Q100UDEHCPU versions serial number 20101 and prior **Description** A remote attacker can send specific bytes over Port 5007 that will result in an Ethernet stack crash. **Recommendations** For Mitsubishi Electric Q03UDVCPU versions serial number 20081 and prior, update to a version with a serial number later than 20081. For Mitsubishi Electric Q04UDVCPU versions serial number 20081 and prior, update to a version with a serial number later than 20081. For Mitsubishi Electric Q06UDVCPU versions serial number 20081 and prior, update to a version with a serial number later than 20081. For Mitsubishi Electric Q13UDVCPU versions serial number 20081 and prior, update to a version with a serial number later than 20081. For Mitsubishi Electric Q26UDVCPU versions serial number 20081 and prior, update to a version with a serial number later than 20081. For Mitsubishi Electric Q03UDECPU versions serial number 20101 and prior, update to a version with a serial number later than 20101. For Mitsubishi Electric Q04UDEHCPU versions serial number 20101 and prior, update to a version with a serial number later than 20101. For Mitsubishi Electric Q06UDEHCPU versions serial number 20101 and prior, update to a version with a serial number later than 20101. For Mitsubishi Electric Q10UDEHCPU versions serial number 20101 and prior, update to a version with a serial number later than 20101. For Mitsubishi Electric Q13UDEHCPU versions serial number 20101 and prior, update to a version with a serial number later than 20101. For Mitsubishi Electric Q20UDEHCPU versions serial number 20101 and prior, update to a version with a serial number later than 20101. For Mitsubishi Electric Q26UDEHCPU versions serial number 20101 and prior, update to a version with a serial number later than 20101. For Mitsubishi Electric Q50UDEHCPU versions serial number 20101 and prior, update to a version with a serial number later than 20101. For Mitsubishi Electric Q100UDEHCPU versions serial number 20101 and prior, update to a version with a serial number later than 20101.