First published: Fri Apr 25 2025(Updated: )
Improper Validation of Specified Quantity in Input vulnerability in Mitsubishi Electric Corporation CC-Link IE TSN Remote I/O module, CC-Link IE TSN Analog-Digital Converter module, CC-Link IE TSN Digital-Analog Converter module, CC-Link IE TSN FPGA module and CC-Link IE TSN Remote Station Communication LSI CP620 with GbE-PHY allows a remote unauthenticated attacker to cause a Denial of Service condition in the products by sending specially crafted UDP packets.
Credit: Mitsubishielectric.Psirt@yd.MitsubishiElectric.co.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Mitsubishi Electric CC-Link IE TSN Remote I/O Module | ||
Mitsubishi Electric CC-Link IE TSN Analog-Digital Converter Module NZ2GN2B-60AD4 | ||
Mitsubishi Electric CC-Link IE TSN Digital-Analog Converter Module NZ2GN2B-60DA4 | ||
Mitsubishi Electric CC-Link IE TSN FPGA Module NZ2GN2S-D41PD02 | ||
Mitsubishi Electric CC-Link IE TSN Remote Station Communication LSI CP620 with GbE-PHY NZ2GACP620-300 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-3511 is classified as a high-severity vulnerability due to its potential impact on system integrity.
To fix CVE-2025-3511, apply the latest firmware updates provided by Mitsubishi Electric for the affected modules.
CVE-2025-3511 affects several Mitsubishi Electric products including the CC-Link IE TSN Remote I/O module and Analog-Digital Converter module.
CVE-2025-3511 is an Improper Validation of Specified Quantity in Input vulnerability.
Exploitation of CVE-2025-3511 could lead to unauthorized access and manipulation of system functionality.