CVE-2020-5665

HIGH

MELSEC iQ-F FX5U(C) CPU Firmware <= 1.060 - Denial of Service via ARP Packet

Title source: llm
STIX 2.1

Description

Improper check or handling of exceptional conditions in MELSEC iQ-F series FX5U(C) CPU unit firmware version 1.060 and earlier allows an attacker to cause a denial-of-service (DoS) condition on program execution and communication by sending a specially crafted ARP packet.

References (4)

Core 4
Core References
Third Party Advisory, US Government Resource x_refsource_misc
https://us-cert.cisa.gov/ics/advisories/icsa-20-345-01
Third Party Advisory x_refsource_misc
https://jvn.jp/vu/JVNVU95638588/index.html

Scores

CVSS v3 7.4
EPSS 0.0018
EPSS Percentile 39.0%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H

Details

Status published
Products (1)
mitsubishielectric/melsec_iq-f_fx5u_cpu_firmware < 1.060
Published Dec 14, 2020
Tracked Since Feb 18, 2026