An issue was discovered in Mitsubishi Electric Automation MELSEC-Q series Ethernet interface modules QJ71E71-100, all versions, QJ71E71-B5, all versions, and QJ71E71-B2, all versions. The affected Ethernet interface module is connected to a MELSEC-Q PLC, which may allow a remote attacker to connect to the PLC via Port 5002/TCP and cause a denial of service, requiring the PLC to be reset to resume operation. This is caused by an Unrestricted Externally Accessible Lock.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:HMitsubishielectric Qj71e71 100
HWMitsubishielectricall versionsMitsubishielectric Qj71e71 100 Firmware
OSMitsubishielectricall versionsMitsubishielectric Qj71e71 B2
HWMitsubishielectricall versionsMitsubishielectric Qj71e71 B2 Firmware
OSMitsubishielectricall versionsMitsubishielectric Qj71e71 B5
HWMitsubishielectricall versionsMitsubishielectric Qj71e71 B5 Firmware
OSMitsubishielectricall versions
Related vulnerabilities
Podatność na podszywanie się pod urządzenie w produktach Mitsubishi Electric — RCE
In Mitsubishi Electric MELSEC-Q series Ethernet module QJ71E71-100 serial number 20121 and prior, an attacker ...
An issue was discovered in Mitsubishi Electric Automation MELSEC-Q series Ethernet interface modules QJ71E71-1...
Unsafe Reflection w oprogramowaniu Mitsubishi Electric — zdalne wykonanie kodu
Brak uwierzytelnienia w sterownikach PLC i CNC Mitsubishi Electric — RCE