CVE-2025-3755 Information

Description

Improper Validation of Specified Index Position or Offset in Input vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series CPU modules allows a remote unauthenticated attacker to read information in the product to cause a Denial-of-Service (DoS) condition in MELSOFT connection or to stop the operation of the CPU module (causing a DoS condtion on the CPU module) by sending specially crafted packets. The product is needed to reset for recovery.

Reference

https://jvn.jp/vu/JVNVU94070048/ https://www.mitsubishielectric.com/psirt/vulnerability/pdf/2025-003_en.pdf

Share on: