PT-2025-23139 · Mitsubishi · Melsec Iq-F Series
Published
2025-05-29
·
Updated
2025-08-27
·
CVE-2025-3755
CVSS v2.0
9.4
Critical
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Mitsubishi Electric Corporation MELSEC iQ-F Series CPU modules (affected versions not specified)
Description
The issue allows a remote unauthenticated attacker to read information in the product, cause a Denial-of-Service (DoS) condition in MELSOFT connection, or stop the operation of the CPU module, by sending specially crafted packets. The product needs to be reset for recovery.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Melsec Iq-F Series