CVE-2026-1875: Denial-of-Service (DoS) vulnerability in Ethernet function of MELSEC iQ-F Series EtherNet/IP module
Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-EIP EtherNet/IP Module FX5-EIP versions 1.000 and prior allows a remote attacker to cause a denial-of-service (DoS) condition on the products by continuously sending UDP packets to the products. A system reset of the product is required for recovery.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-1875?
CVE-2026-1875 has a severity rating that indicates a significant risk of Denial-of-Service (DoS) due to improper resource shutdown or release.
How do I fix CVE-2026-1875?
To address CVE-2026-1875, you should apply the latest software updates or patches provided by Mitsubishi Electric for the MELSEC iQ-F Series EtherNet/IP module.
What types of attacks are possible with CVE-2026-1875?
CVE-2026-1875 can be exploited by remote attackers to cause a Denial-of-Service (DoS) condition, potentially disrupting network operations.
What versions are affected by CVE-2026-1875?
CVE-2026-1875 affects all versions of the Mitsubishi Electric MELSEC iQ-F Series FX5-EIP EtherNet/IP module.
Who should be concerned about CVE-2026-1875?
System administrators and users of the Mitsubishi Electric MELSEC iQ-F Series should be concerned about CVE-2026-1875 due to the potential for service interruptions.