Improper Validation of Specified Quantity in Input vulnerability in Mitsubishi Electric MELSEC iQ-R Series R08PCPU, R16PCPU, R32PCPU, and R120PCPU allows an unauthenticated attacker to read device data or part of a control program from the affected product, write device data in the affected product, or cause a denial of service (DoS) condition on the affected product by sending a specially crafted packet containing a specific command to the affected product.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 05 Feb 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mitsubishi
Mitsubishi melsec Iq-r Series Mitsubishi Electric Mitsubishi Electric melsec Iq-r Series |
|
| Vendors & Products |
Mitsubishi
Mitsubishi melsec Iq-r Series Mitsubishi Electric Mitsubishi Electric melsec Iq-r Series |
Thu, 05 Feb 2026 05:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Validation of Specified Quantity in Input vulnerability in Mitsubishi Electric MELSEC iQ-R Series R08PCPU, R16PCPU, R32PCPU, and R120PCPU allows an unauthenticated attacker to read device data or part of a control program from the affected product, write device data in the affected product, or cause a denial of service (DoS) condition on the affected product by sending a specially crafted packet containing a specific command to the affected product. | |
| Title | Information Disclosure, Information Tampering, and Denial of Service (DoS) Vulnerability in Mitsubishi Electric proprietary protocol communication and SLMP communication for FA products | |
| Weaknesses | CWE-1284 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Mitsubishi
Published:
Updated: 2026-02-05T05:16:53.721Z
Reserved: 2025-12-25T08:29:39.662Z
Link: CVE-2025-15080
No data.
Status : Received
Published: 2026-02-05T06:15:52.353
Modified: 2026-02-05T06:15:52.353
Link: CVE-2025-15080
No data.
OpenCVE Enrichment
Updated: 2026-02-05T11:39:04Z
Weaknesses