QID 590925
Date Published: 2022-07-18
QID 590925: Mitsubishi Electric MELSOFT Remote Access Vulnerability (2019-005)
AFFECTED PRODUCTS
All versions of MELSEC iQ-R, iQ-F, Q, L and F series programmable controllers with MELSOFT transmission port (UDP/IP) in Ethernet port are affected.
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
When the MELSOFT transmission port enters an unprocessable condition, authorized clients cannot connect to the MELSOFT transmission port, and devices communicating on other transmission ports are difficult to connect. In addition, this vulnerability will not affect functions other than Ethernet communication.
Solution
Customers are advised to refer to CERT MITIGATIONS section 2019-005 for affected packages and patching details.
Vendor References
CVEs related to QID 590925
Software Advisories
| Advisory ID | Software | Component | Link |
|---|