First published: Fri Oct 08 2021(Updated: )
Uncontrolled resource consumption in Mitsubishi Electric MELSEC iQ-R series C Controller Module R12CCPU-V Firmware Versions "16" and prior allows a remote unauthenticated attacker to cause a denial-of-service (DoS) condition by sending a large number of packets in a short time while the module starting up. System reset is required for recovery.
Credit: Mitsubishielectric.Psirt@yd.MitsubishiElectric.co.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Mitsubishielectric R12ccpu-v Firmware | <=16 | |
Mitsubishielectric R12ccpu-v | ||
Mitsubishi Electric R12CCPU-V: Firmware Version 16 and prior |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-20600.
The severity level of CVE-2021-20600 is high.
The affected software for CVE-2021-20600 is Mitsubishi Electric MELSEC iQ-R series C Controller Module R12CCPU-V Firmware Versions "16" and prior.
CVE-2021-20600 allows a remote unauthenticated attacker to cause a denial-of-service (DoS) condition by sending a large number of packets in a short time while the module is starting.
Please refer to the official references provided for information on available fixes or patches for CVE-2021-20600.