PT-2025-23139 · Mitsubishi · Melsec Iq-F Series

Published

2025-05-29

·

Updated

2025-08-27

·

CVE-2025-3755

CVSS v2.0

9.4

Critical

VectorAV:N/AC:L/Au:N/C:C/I:N/A:C
Name of the Vulnerable Software and Affected Versions Mitsubishi Electric Corporation MELSEC iQ-F Series CPU modules (affected versions not specified)
Description The issue allows a remote unauthenticated attacker to read information in the product, cause a Denial-of-Service (DoS) condition in MELSOFT connection, or stop the operation of the CPU module, by sending specially crafted packets. The product needs to be reset for recovery.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Weakness Enumeration

Related Identifiers

BDU:2025-16256
CVE-2025-3755

Affected Products

Melsec Iq-F Series