CVE-2025-3511

CVSS 3.1 Score 5.9 of 10 (medium)

Details

Published Apr 25, 2025
Updated: Apr 29, 2025
CWE ID 1284

Summary

CVE-2025-3511 is a Denial of Service vulnerability affecting Mitsubishi Electric Corporation's CC-Link IE TSN Remote I/O module, CC-Link IE TSN Analog-Digital Converter module, CC-Link IE TSN Digital-Analog Converter module, CC-Link IE TSN FPGA module, and CC-Link IE TSN Remote Station Communication LSI CP620 with GbE-PHY. An unauthenticated attacker can exploit this Improper Validation of Specified Quantity in Input vulnerability by sending specially crafted UDP packets, causing a Denial of Service condition in the products. This issue may lead to operational disruption and potential downtime in industrial automation systems that use the affected components. Organizations using these Mitsubishi Electric products are advised to apply the forthcoming patches as soon as they become available to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share