SecAlerts
mitsubishi electric logo

mitsubishi electric

Security Risk Profile

51
/100
medium

Security Risk Score

Comprehensive risk assessment based on 121 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from March 28, 2008 to present

121
Total CVEs
78
Critical+High
0
Exploited
75
Unpatched

Threat Assessment

Avg CVSS
7.9
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
75
Critical/High
Risk Level
51/100
medium
🆕 23Fresh (<7d)📈 24 in Last 30 Days

Severity Distribution

Critical
27
High
51
Medium
19
Low
0

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
5

Age Distribution

Common Weaknesses (CWE)

1
Integer Overflow
4
2
Input Validation
4
3
Buffer Overflow
3
4
SQL Injection
2
5
OS Command Injection
2

Most Affected Products

1. Mitsubishielectric Gx Works331
2. Mitsubishi Electric GENESIS6412
3. Mitsubishi Electric MC Works6410
4. Mitsubishi Electric GX Works3:   1.000A to 1.011M (affected by CVE-2022-25164, CVE-2022-29825, CVE-2022-29826, CVE-2022-29827, CVE-2022-29828, CVE-2022-29829, CVE-2022-29830)  1.015R to 1.087R (affected by CVE-2022-25164, CVE-2022-29825, CVE-2022-29826, CVE-2022-29827, CVE-2022-29828, CVE-2022-29829, CVE-2022-29830, CVE-2022-29831, CVE-2022-29832, CVE-2022-29833) 1.090U (affected by CVE-2022-25164, CVE-2022-29825, CVE-2022-29827, CVE-2022-29828, CVE-2022-29829, CVE-2022-29830, CVE-2022-29831, CVE-2022-29832, CVE-2022-29833)  --------- Begin Update B Part 1 of 2 ---------  1.095Z (affected by CVE-2022-25164, CVE-2022-29827, CVE-2022-29828, CVE-2022-29830, CVE-2022-29831, CVE-2022-29832, CVE-2022-29833)  1.096A and later (affected by CVE-2022-29827, CVE-2022-29828, CVE-2022-29832, CVE-2022-29833)10
5. Mitsubishi Electric 1.000A to 1.011M (affected by CVE-2022-25164, CVE-2022-29825, CVE-2022-29826, CVE-2022-29827, CVE-2022-29828, CVE-2022-29829, CVE-2022-29830)10

Recent Vulnerabilities

See more →
CVE-2026-13584
CVSS 7.1high

Information tampering and Denial-of-service (DoS) vulnerability in CC-Link IE TSN communication protocol

7/30/2026🔧 No Patch
CVE-2026-8806
CVSS 8.7EPSS 1%high

Denial-of-service (DoS) vulnerability in MELSEC iQ-F Series FX5-ENET/IP Ethernet module

6/19/2026🔧 No Patch
CVE-2026-8805
CVSS 8.7EPSS 1%high

Denial-of-service (DoS) vulnerability in MELSEC iQ-F Series EtherNet/IP module

6/19/2026🔧 No Patch
https://reddit.com/r/cybersecurity/comments/1u9doic/cve20265667_unauthenticated_remote_control_of/
unknown

CVE-2026-5667: Unauthenticated Remote Control of Mitsubishi MAC-577IF-2E WiFi Adapters via Probe Request Reconnaissance

6/18/2026🔧 No Patch
CVE-2026-5667
CVSS 7.2high

Information Disclosure, Information Tampering, or Denial-of-Service (DoS) Vulnerability in Multiple Home Appliances

6/17/2026🔧 No Patch
CVE-2025-14816
CVSS 9.3critical

Information Disclosure, Tampering, and Denial-of-Service Vulnerabilities in GENESIS64, ICONICS Suite, MobileHMI, Hyper Historian, AnalytiX, GENESIS, and MC Works64

4/8/2026🔧 No Patch
CVE-2025-14815
CVSS 9.3critical

Information Disclosure, Tampering, and Denial-of-Service Vulnerabilities in GENESIS64, ICONICS Suite, MobileHMI, Hyper Historian, AnalytiX, GENESIS, and MC Works64

4/8/2026🔧 No Patch
CVE-2025-2399
CVSS 5.9medium

Denial of Service (DoS) Vulnerability in Mitsubishi Electric CNC Series

3/10/2026🔧 No Patch
CVE-2026-1876
CVSS 8.7high

Denial-of-Service (DoS) vulnerability in Ethernet function of MELSEC iQ-F Series Ethernet module

3/3/2026🔧 No Patch
CVE-2026-1875
CVSS 8.7high

Denial-of-Service (DoS) vulnerability in Ethernet function of MELSEC iQ-F Series EtherNet/IP module

3/3/2026🔧 No Patch

Monitor mitsubishi electric in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.