← Back to home
ICSA-21-201-01  ·  Published 2021-07-20  ·  View on CISA ICS-CERT ↗

Mitsubishi Electric MELSEC-F Series

CVSS 7.5 HIGH

Risk Summary

Successful exploitation of this vulnerability may cause a denial-of-service condition in communication with the product. System reset may be required for recovery.

CVEs (1)

Remediations

  • FX3U-ENET: Firmware Version 1.16 or later
  • FX3U-ENET-L: Firmware Version 1.16 or later
  • FX3U-ENET-P502: Firmware Version 1.16 or later
  • Use a firewall or virtual private network (VPN), etc., to prevent unauthorized access when Internet access is required.
  • Use within a LAN and block access from untrusted networks and hosts through firewalls.
  • Please refer to the Mitsubishi Electric advisory for further details.

Affected Vendors

Mitsubishi Electric

Affected Products (3)

Mitsubishi Electric · FX3U-ENET-P502 <= 1.14
Mitsubishi Electric · FX3U-ENET-L <= 1.14
Mitsubishi Electric · FX3U-ENET <= 1.14

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more