CVE-2020-5594: Critical severity mitsubishi electric melsec iq-r firmware vulnerability
Mitsubishi Electric MELSEC iQ-R, iQ-F, Q, L, and FX series CPU modules all versions contain a vulnerability that allows cleartext transmission of sensitive information between CPU modules and GX Works3 and/or GX Works2 via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-5594?
CVE-2020-5594 is classified as a medium severity vulnerability due to the cleartext transmission of sensitive information.
How do I fix CVE-2020-5594?
To mitigate CVE-2020-5594, ensure secure transmission methods are implemented between the CPU modules and GX Works3 or GX Works2.
What types of devices are affected by CVE-2020-5594?
CVE-2020-5594 affects Mitsubishi Electric MELSEC iQ-R, iQ-F, Q, L, and FX series CPU modules.
What is at risk due to CVE-2020-5594?
CVE-2020-5594 potentially exposes sensitive information transmitted in cleartext between control modules and software.
Is there a specific version of the firmware affected by CVE-2020-5594?
All versions of the affected Mitsubishi Electric MELSEC firmware are compromised by CVE-2020-5594.