CVE-2026-8806: Denial-of-service (DoS) vulnerability in MELSEC iQ-F Series FX5-ENET/IP Ethernet module
Expected Behavior Violation vulnerability in Mitsubishi Electric MELSEC iQ-F Series FX5-ENET/IP Ethernet Module FX5-ENET/IP all versions allows a remote attacker to cause a denial-of-service (DoS) condition in the affected product by continuously sending a large number of communication packets to the Ethernet port of the product in a short period of time, increasing the processing load of the product, preventing the internal anomaly-detection processing from being performed, and causing the communication function to stop.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-8806?
CVE-2026-8806 has a high severity rating of 8.7 according to the CVSS.
What types of attacks can exploit CVE-2026-8806?
CVE-2026-8806 can be exploited by a remote attacker to cause a denial-of-service (DoS) condition.
How do I fix CVE-2026-8806?
To fix CVE-2026-8806, update the Mitsubishi Electric MELSEC iQ-F Series FX5-ENET/IP Ethernet module to the latest version.
What products are affected by CVE-2026-8806?
CVE-2026-8806 affects all versions of the Mitsubishi Electric MELSEC iQ-F Series FX5-ENET/IP Ethernet Module.
When was CVE-2026-8806 published?
CVE-2026-8806 was published on June 19, 2026.