mitsubishielectric Vulnerabilities and Affected Products
Vulnerabilities associated with melsec_l02cpu-p.
Products
Clear product- mc_works646 vulnerabilities
- l02cpu-p5 vulnerabilities
- l26cpu-bt5 vulnerabilities
- melsec_l02cpu-p5 vulnerabilities
- melsec_l06cpu-p5 vulnerabilities
- melsec_l26cpu-p5 vulnerabilities
- melsec_l26cpu-pbt5 vulnerabilities
- melsec_q-q03udecpu5 vulnerabilities
- melsec_q-q04udehcpu5 vulnerabilities
- melsec_q-q06udehcpu5 vulnerabilities
- melsec_q-q100udehcpu5 vulnerabilities
- melsec_q-q10udehcpu5 vulnerabilities
- melsec_q-q13udehcpu5 vulnerabilities
- melsec_q-q20udehcpu5 vulnerabilities
- melsec_q-q26udehcpu5 vulnerabilities
- melsec_q-q50udehcpu5 vulnerabilities
- genesis642 vulnerabilities
- smartrtu_firmware2 vulnerabilities
- c_controller_module_setting_and_monitoring_tool1 vulnerability
- cpu_module_logging_configuration_tool1 vulnerability
- cw_configurator1 vulnerability
- data_transfer1 vulnerability
- ezsocket1 vulnerability
- fcsb12241 vulnerability
- fr_configurator21 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-1917CRITICAL | Integer Overflow or Wraparound vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remote unauthenticated attacker to execute malicious code on a target product by sending a specially crafted packet. CWE-190Mar 15, 2024 | CVSS9.8v3.1 | EPSS1.07% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-1916CRITICAL | Integer Overflow or Wraparound vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remote unauthenticated attacker to execute malicious code on a target product by sending a specially crafted packet. CWE-190Mar 15, 2024 | CVSS9.8v3.1 | EPSS1.07% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-1915CRITICAL | Incorrect Pointer Scaling vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remote unauthenticated attacker to execute malicious code on a target product by sending a specially crafted packet. CWE-468Mar 15, 2024 | CVSS9.8v3.1 | EPSS1.04% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-0803CRITICAL | Integer Overflow or Wraparound vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remote unauthenticated attacker to execute malicious code on a target product by sending a specially crafted packet. CWE-190Mar 14, 2024 | CVSS9.8v3.1 | EPSS1.04% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-0802CRITICAL | Incorrect Pointer Scaling vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remote unauthenticated attacker to read arbitrary information from a target product or execute malicious code on a target product by sending a specially crafted packet. CWE-468Mar 14, 2024 | CVSS9.8v3.1 | EPSS1.07% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |