CVE-2025-3511
CVSS 3.1 Score 5.9 of 10 (medium)
Details
Summary
CVE-2025-3511 is a Denial of Service vulnerability affecting Mitsubishi Electric Corporation's CC-Link IE TSN Remote I/O module, CC-Link IE TSN Analog-Digital Converter module, CC-Link IE TSN Digital-Analog Converter module, CC-Link IE TSN FPGA module, and CC-Link IE TSN Remote Station Communication LSI CP620 with GbE-PHY. An unauthenticated attacker can exploit this Improper Validation of Specified Quantity in Input vulnerability by sending specially crafted UDP packets, causing a Denial of Service condition in the products. This issue may lead to operational disruption and potential downtime in industrial automation systems that use the affected components. Organizations using these Mitsubishi Electric products are advised to apply the forthcoming patches as soon as they become available to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.