First published: Tue Nov 19 2024(Updated: )
Improper Validation of Specified Type of Input vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-ENET versions 1.100 and later and FX5-ENET/IP versions 1.100 to 1.104 allows a remote attacker to cause a Denial of Service condition in Ethernet communication of the products by sending specially crafted SLMP packets.
Credit: Mitsubishielectric.Psirt@yd.MitsubishiElectric.co.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Mitsubishi Electric MELSEC iQ-F Series Ethernet module FX5-ENET | >=1.100 | |
Mitsubishi Electric FX5-ENET/IP | >=1.100<1.105 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-8403 is classified as having a critical severity rating due to its potential to cause a Denial of Service condition.
To mitigate CVE-2024-8403, it is recommended to update affected devices to the latest versions provided by Mitsubishi Electric.
CVE-2024-8403 affects Mitsubishi Electric MELSEC iQ-F Series FX5-ENET versions 1.100 and later and FX5-ENET/IP versions 1.100 to 1.104.
Yes, CVE-2024-8403 can be exploited by a remote attacker due to improper validation of input.
CVE-2024-8403 can lead to a Denial of Service condition, disrupting Ethernet communication of affected devices.