Improper Validation of Specified Quantity in Input vulnerability in Mitsubishi Electric MELSEC iQ-R Series R08PCPU, R16PCPU, R32PCPU, and R120PCPU allows an unauthenticated attacker to read device data or part of a control program from the affected product, write device data in the affected product, or cause a denial of service (DoS) condition on the affected product by sending a specially crafted packet containing a specific command to the affected product.
Metrics
Affected Vendors & Products
References
History
Thu, 05 Feb 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mitsubishi
Mitsubishi melsec Iq-r Series Mitsubishi Electric Mitsubishi Electric melsec Iq-r Series |
|
| Vendors & Products |
Mitsubishi
Mitsubishi melsec Iq-r Series Mitsubishi Electric Mitsubishi Electric melsec Iq-r Series |
Thu, 05 Feb 2026 05:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Validation of Specified Quantity in Input vulnerability in Mitsubishi Electric MELSEC iQ-R Series R08PCPU, R16PCPU, R32PCPU, and R120PCPU allows an unauthenticated attacker to read device data or part of a control program from the affected product, write device data in the affected product, or cause a denial of service (DoS) condition on the affected product by sending a specially crafted packet containing a specific command to the affected product. | |
| Title | Information Disclosure, Information Tampering, and Denial of Service (DoS) Vulnerability in Mitsubishi Electric proprietary protocol communication and SLMP communication for FA products | |
| Weaknesses | CWE-1284 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Mitsubishi
Published:
Updated: 2026-02-05T05:16:53.721Z
Reserved: 2025-12-25T08:29:39.662Z
Link: CVE-2025-15080
No data.
Status : Received
Published: 2026-02-05T06:15:52.353
Modified: 2026-02-05T06:15:52.353
Link: CVE-2025-15080
No data.
OpenCVE Enrichment
Updated: 2026-02-05T11:39:04Z