CVE-2023-7033
Record summary
CVE-2023-7033 has a selected CVSS score of 5.3 (medium).
Description
Insufficient Resource Pool vulnerability in Ethernet function of Mitsubishi Electric Corporation MELSEC iQ-R series CPU module, MELSEC iQ-L series CPU module, MELSEC iQ-R Ethernet Interface Module, MELSEC iQ-R CC-Link IE TSN Master/Local Module, CC-Link IE TSN Remote I/O Module, CC-Link IE TSN Analog-Digital Converter Module, CC-Link IE TSN Digital-Analog Converter Module, CC-Link IE TSN - CC-Link IE Field Network Bridge Module, CC-Link IE TSN - AnyWireASLINK Bridge Module, CC-Link IE TSN FPGA Module, CC-Link IE TSN Remote Station Communication LSI CP620 with GbE-PHY, MELSEC iQ-R Motion Module, MELSEC iQ-L Motion Module, MELSEC iQ-F FX5 Motion Module, MELSEC iQ-F Series CPU module, MELSEC iQ-F Series Ethernet module, MELSEC iQ-F Series Ethernet/IP module, MELSEC iQ-F Series OPC UA Module, MELSEC iQ-F Series CC-Link IE TSN master/local module, GOT2000 Series CC-Link IE TSN Communication Unit, FR-A800-E series inverters, FR-F800-E series inverters, FR-E800-E series inverters, INVERTER CC-Link IE TSN Plug-in option, INVERTER CC-Link IE TSN Safety Plug-in option, INVERTER CC-Link IE TSN communication function built-in type, MR-J5 series AC Servos MELSERVO, MR-JET series AC Servos MELSERVO, MR-MD333G series AC Servos MELSERVO, MR-JE series AC Servos MELSERVO, MELSERVO-J4 AC Servos MELSERVO and Embedded Type Servo System Controller allow a remote attacker to cause a temporary Denial of Service condition for a certain period of time in Ethernet communication of the products by performing TCP SYN Flood attack.
Exploitation context
CISA SSVC decision
CISA Coordinator · SSVC 2.0.3 · Evaluated Feb 27, 2024 · Source: CVE List
Affected products and versions
Showing 12 of 100Source data: 100 of 164 entries available| Product | Source | Version range | Status |
|---|---|---|---|
CC-Link IE TSN - AnyWireASLINK Bridge Module NZ2AW1GNALBrowse Mitsubishi Electric Corporation / CC-Link IE TSN - AnyWireASLINK Bridge Module NZ2AW1GNALDefault status: unaffected | CVE List | all versions | affected |
CC-Link IE TSN - CC-Link IE Field Network Bridge Module NZ2GN-GFBBrowse Mitsubishi Electric Corporation / CC-Link IE TSN - CC-Link IE Field Network Bridge Module NZ2GN-GFBDefault status: unaffected | CVE List | all versions | affected |
CC-Link IE TSN Analog-Digital Converter Module NZ2GN2B-60AD4Browse Mitsubishi Electric Corporation / CC-Link IE TSN Analog-Digital Converter Module NZ2GN2B-60AD4Default status: unaffected | CVE List | all versions | affected |
CC-Link IE TSN Analog-Digital Converter Module NZ2GN2S-60AD4Browse Mitsubishi Electric Corporation / CC-Link IE TSN Analog-Digital Converter Module NZ2GN2S-60AD4Default status: unaffected | CVE List | all versions | affected |
CC-Link IE TSN Digital-Analog Converter Module NZ2GN2B-60DA4Browse Mitsubishi Electric Corporation / CC-Link IE TSN Digital-Analog Converter Module NZ2GN2B-60DA4Default status: unaffected | CVE List | all versions | affected |
CC-Link IE TSN Digital-Analog Converter Module NZ2GN2S-60DA4Browse Mitsubishi Electric Corporation / CC-Link IE TSN Digital-Analog Converter Module NZ2GN2S-60DA4Default status: unaffected | CVE List | all versions | affected |
CC-Link IE TSN FPGA Module NZ2GN2S-D41D01Browse Mitsubishi Electric Corporation / CC-Link IE TSN FPGA Module NZ2GN2S-D41D01Default status: unaffected | CVE List | all versions | affected |
CC-Link IE TSN FPGA Module NZ2GN2S-D41P01Browse Mitsubishi Electric Corporation / CC-Link IE TSN FPGA Module NZ2GN2S-D41P01Default status: unaffected | CVE List | all versions | affected |
CC-Link IE TSN FPGA Module NZ2GN2S-D41PD02Browse Mitsubishi Electric Corporation / CC-Link IE TSN FPGA Module NZ2GN2S-D41PD02Default status: unaffected | CVE List | all versions | affected |
CC-Link IE TSN Remote I/O Module NZ2GN12A2-16TBrowse Mitsubishi Electric Corporation / CC-Link IE TSN Remote I/O Module NZ2GN12A2-16TDefault status: unaffected | CVE List | all versions | affected |
CC-Link IE TSN Remote I/O Module NZ2GN12A2-16TEBrowse Mitsubishi Electric Corporation / CC-Link IE TSN Remote I/O Module NZ2GN12A2-16TEDefault status: unaffected | CVE List | all versions | affected |
CC-Link IE TSN Remote I/O Module NZ2GN12A4-16DBrowse Mitsubishi Electric Corporation / CC-Link IE TSN Remote I/O Module NZ2GN12A4-16DDefault status: unaffected | CVE List | all versions | affected |