PT-2022-9193 · Mitsubishi · Melsec-F Series Fx3U-Enet+1

Published

2022-01-14

·

Updated

2022-01-21

·

CVE-2021-20613

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions MELSEC-F series FX3U-ENET Firmware versions prior to 1.17 MELSEC-F series FX3U-ENET-L Firmware versions prior to 1.17 MELSEC-F series FX3U-ENET-P502 Firmware versions prior to 1.17
Description The issue allows a remote unauthenticated attacker to cause a denial-of-service (DoS) condition in the communication function of the product by sending specially crafted packets. Control by MELSEC-F series PLC is not affected, but a system reset is required for recovery.
Recommendations For MELSEC-F series FX3U-ENET Firmware versions prior to 1.17, update to version 1.17 or later. For MELSEC-F series FX3U-ENET-L Firmware versions prior to 1.17, update to version 1.17 or later. For MELSEC-F series FX3U-ENET-P502 Firmware versions prior to 1.17, update to version 1.17 or later.

Fix

Improper Initialization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-20613

Affected Products

Melsec-F Series Fx3U-Enet
Melsec-F Series Fx3U-Enet-P502