CVE-2024-8403: Denial-of-Service Vulnerability in Ethernet port on MELSEC iQ-F Ethernet Module and EtherNet/IP Module
Improper Validation of Specified Type of Input vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-ENET versions 1.100 to 1.200 and FX5-ENET/IP versions 1.100 to 1.104 allows a remote attacker to cause a Denial of Service condition in Ethernet communication of the products by sending specially crafted SLMP packets.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8403?
CVE-2024-8403 is classified as having a critical severity rating due to its potential to cause a Denial of Service condition.
How do I fix CVE-2024-8403?
To mitigate CVE-2024-8403, it is recommended to update affected devices to the latest versions provided by Mitsubishi Electric.
What products are affected by CVE-2024-8403?
CVE-2024-8403 affects Mitsubishi Electric MELSEC iQ-F Series FX5-ENET versions 1.100 and later and FX5-ENET/IP versions 1.100 to 1.104.
Can CVE-2024-8403 be exploited remotely?
Yes, CVE-2024-8403 can be exploited by a remote attacker due to improper validation of input.
What impact does CVE-2024-8403 have on network communication?
CVE-2024-8403 can lead to a Denial of Service condition, disrupting Ethernet communication of affected devices.