Unknown
CVE-2022-24946
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2022-24946
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
Improper Resource Locking vulnerability in Mitsubishi Electric MELSEC iQ-R Series R12CCPU-V firmware versions “16” and prior, Mitsubishi Electric MELSEC-Q Series Q03UDECPU the first 5 digits of serial No. “24061” and prior, Mitsubishi Electric MELSEC-Q Series Q04/06/10/13/20/26/50/100UDEHCPU the first 5 digits of serial No. “24061” and prior, Mitsubishi Electric MELSEC-Q Series Q03/04/06/13/26UDVCPU the first 5 digits of serial number “24051” and prior, Mitsubishi Electric MELSEC-Q Series Q04/06/13/26UDPVCPU the first 5 digits of serial number “24051” and prior, Mitsubishi Electric MELSEC-Q Series Q12DCCPU-V all versions, Mitsubishi Electric MELSEC-Q Series Q24DHCCPU-V(G) all versions, Mitsubishi Electric MELSEC-Q Series Q24/26DHCCPU-LS all versions, Mitsubishi Electric MELSEC-L series L02/06/26CPU(-P) the first 5 digits of serial number “24051” and prior, Mitsubishi Electric MELSEC-L series L26CPU-(P)BT the first 5 digits of serial number “24051” and prior and Mitsubishi Electric MELIPC Series MI5122-VW firmware versions “05” and prior allows a remote unauthenticated attacker to cause a denial of service (DoS) condition in Ethernet communications by sending specially crafted packets. A system reset of the products is required for recovery.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- l02cpu firmware -,
- l02cpu-p firmware -,
- l02scpu firmware -,
- l02scpu-p firmware -,
- l06cpu firmware -,
- l06cpu-p firmware -,
- l26cpu firmware -,
- l26cpu-(p)bt firmware -,
- l26cpu-bt firmware -,
- l26cpu-bt-cm firmware -,
- l26cpu-p firmware -,
- l26cpu-pbt firmware -,
- q03udecpu firmware -,
- q04udehcpu firmware -,
- q04udpvcpu firmware -,
- q04udvcpu firmware -,
- q06ccpu-v firmware -,
- q06phcpu firmware -,
- q06udehcpu firmware -,
- q06udpvcpu firmware -,
- q06udvcpu firmware -,
- q100udehcpu firmware -,
- q10udehcpu firmware -,
- q13udehcpu firmware -,
- q13udpvcpu firmware -,
- q13udvcpu firmware -,
- q20udehcpu firmware -,
- q26dhccpu-ls firmware -,
- q26udehcpu firmware -,
- q26udpvcpu firmware -,
- q26udvcpu firmware -,
- q50udehcpu firmware -
References
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: