CVE-2019-6535: Mitsubishi Electric MELSEC-Q Series PLCs Resource Exhaustion

Published Feb 5, 2019
·
Updated

Mitsubishi Electric Q03/04/06/13/26UDVCPU: serial number 20081 and prior, Q04/06/13/26UDPVCPU: serial number 20081 and prior, and Q03UDECPU, Q04/06/10/13/20/26/50/100UDEHCPU: serial number 20101 and prior. A remote attacker can send specific bytes over Port 5007 that will result in an Ethernet stack crash and disruption to USB communication.

Affected Software

75 affected components
All of the following
Mitsubishielectric Q03udvcpu Firmware<=20081
Mitsubishielectric Q03udvcpu
All of the following
Mitsubishielectric Q04udvcpu Firmware<=20081
Mitsubishielectric Q04udvcpu
All of the following
Mitsubishielectric Q06udvcpu Firmware<=20081
Mitsubishielectric Q06udvcpu
All of the following
Mitsubishielectric Q13udvcpu Firmware<=20081
Mitsubishielectric Q13udvcpu
All of the following
Mitsubishielectric Q26udvcpu Firmware<=20081
Mitsubishielectric Q26udvcpu
All of the following
Mitsubishielectric Q04udpvcpu Firmware<=20081
Mitsubishielectric Q04udpvcpu
All of the following
Mitsubishielectric Q06udpvcpu Firmware<=20081
Mitsubishielectric Q06udpvcpu
All of the following
Mitsubishielectric Q13udpvcpu Firmware<=20081
Mitsubishielectric Q13udpvcpu
All of the following
Mitsubishielectric Q26udpvcpu Firmware<=20081
Mitsubishielectric Q26udpvcpu
All of the following
Mitsubishielectric Q03udecpu Firmware<=20101
Mitsubishielectric Q03udecpu
All of the following
Mitsubishielectric Q04udehcpu Firmware<=20101
Mitsubishielectric Q04udehcpu
All of the following
Mitsubishielectric Q06udehcpu Firmware<=20101
Mitsubishielectric Q06udehcpu
All of the following
Mitsubishielectric Q10udehcpu Firmware<=20101
Mitsubishielectric Q10udehcpu
All of the following
Mitsubishielectric Q13udehcpu Firmware<=20101
Mitsubishielectric Q13udehcpu
All of the following
Mitsubishielectric Q20udehcpu Firmware<=20101
Mitsubishielectric Q20udehcpu
All of the following
Mitsubishielectric Q26udehcpu Firmware<=20101
Mitsubishielectric Q26udehcpu
All of the following
Mitsubishielectric Q50udehcpu Firmware<=20101
Mitsubishielectric Q50udehcpu
All of the following
Mitsubishielectric Q100udehcpu Firmware<=20101
Mitsubishielectric Q100udehcpu
Mitsubishielectric Q03udvcpu Firmware<=20081
Mitsubishielectric Q03udvcpu
Mitsubishielectric Q04udvcpu Firmware<=20081
Mitsubishielectric Q04udvcpu
Mitsubishielectric Q06udvcpu Firmware<=20081
Mitsubishielectric Q06udvcpu
Mitsubishielectric Q13udvcpu Firmware<=20081
Mitsubishielectric Q13udvcpu
Mitsubishielectric Q26udvcpu Firmware<=20081
Mitsubishielectric Q26udvcpu
Mitsubishielectric Q04udpvcpu Firmware<=20081
Mitsubishielectric Q04udpvcpu
Mitsubishielectric Q06udpvcpu Firmware<=20081
Mitsubishielectric Q06udpvcpu
Mitsubishielectric Q13udpvcpu Firmware<=20081
Mitsubishielectric Q13udpvcpu
Mitsubishielectric Q26udpvcpu Firmware<=20081
Mitsubishielectric Q26udpvcpu
Mitsubishielectric Q03udecpu Firmware<=20101
Mitsubishielectric Q03udecpu
Mitsubishielectric Q04udehcpu Firmware<=20101
Mitsubishielectric Q04udehcpu
Mitsubishielectric Q06udehcpu Firmware<=20101
Mitsubishielectric Q06udehcpu
Mitsubishielectric Q10udehcpu Firmware<=20101
Mitsubishielectric Q10udehcpu
Mitsubishielectric Q13udehcpu Firmware<=20101
Mitsubishielectric Q13udehcpu
Mitsubishielectric Q20udehcpu Firmware<=20101
Mitsubishielectric Q20udehcpu
Mitsubishielectric Q26udehcpu Firmware<=20101
Mitsubishielectric Q26udehcpu
Mitsubishielectric Q50udehcpu Firmware<=20101
Mitsubishielectric Q50udehcpu
Mitsubishielectric Q100udehcpu Firmware<=20101
Mitsubishielectric Q100udehcpu
: Mitsubishi Electric Q03/04/06/13/26UDVCPU: serial number 20081 and prior
: Mitsubishi Electric Q04/06/13/26UDPVCPU: serial number 20081 and prior
: Mitsubishi Electric Q03UDECPU, Q04/06/10/13/20/26/50/100UDEHCPU: serial number 20101 and prior

Remediation

Information

Mitsubishi Electric has produced a new version of the firmware. Additional information about this vulnerability or Mitsubishi Electric's compensating control is available by contacting a local Mitsubishi Electric representative, which can be found at the following location: https://us.mitsubishielectric.com/fa/en/about-us/distributors Mitsubishi Electric strongly recommends users should operate the affected device behind a firewall.

Event History

Feb 5, 2019
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·07:29 PM
DescriptionSeverityWeaknessAffected Software
Jun 26, 2025
Data Sourced
via ICS·04:56 PM
SeverityWeaknessAffected Software

Parent advisories

This vulnerability appears in the following advisories.

Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the vulnerability ID for this Mitsubishi Electric vulnerability?

The vulnerability ID for this Mitsubishi Electric vulnerability is CVE-2019-6535.

2

What is the severity level of CVE-2019-6535?

CVE-2019-6535 has a severity level of 7.5 (high).

3

Which software versions are affected by CVE-2019-6535?

The affected software versions for CVE-2019-6535 are Q03/04/06/13/26UDVCPU: serial number 20081 and prior, Q04/06/13/26UDPVCPU: serial number 20081 and prior, Q03UDECPU, and Q04/06/10/13/20/26/50/100UDEHCPU: serial number 20101 and prior.

4

How can a remote attacker exploit CVE-2019-6535?

A remote attacker can exploit CVE-2019-6535 by sending specific bytes over Port 5007, which results in an Ethernet stack vulnerability.

5

Where can I find more information about CVE-2019-6535?

You can find more information about CVE-2019-6535 on the following websites: securityfocus.com and ics-cert.us-cert.gov.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203