Vulnerability Details CVE-2022-25163
Improper Input Validation vulnerability in Mitsubishi Electric MELSEC-Q Series QJ71E71-100 first 5 digits of serial number "24061" or prior, Mitsubishi Electric MELSEC-L series LJ71E71-100 first 5 digits of serial number "24061" or prior and Mitsubishi Electric MELSEC iQ-R Series RD81MES96N firmware version "08" or prior allows a remote unauthenticated attacker to cause a denial of service (DoS) condition or execute malicious code on the target products by sending specially crafted packets.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 71.7%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Products affected by CVE-2022-25163
-
cpe:2.3:h:mistubishi:melsec_qj71e71-100:-
-
cpe:2.3:h:mitsubishi:melsec_iq-r_rd81mes96n:-
-
cpe:2.3:h:mitsubishi:melsec_lj71e71-100:-
-
cpe:2.3:o:mitsubishi:melsec_iq-r_rd81mes96n_firmware:*
-
cpe:2.3:o:mitsubishi:melsec_lj71e71-100_firmware:*
-
cpe:2.3:o:mitsubishi:melsec_qj71e71-100_firmware:*