Unknown
CVE-2020-5652
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2020-5652
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
Uncontrolled resource consumption vulnerability in Ethernet Port on MELSEC iQ-R, Q and L series CPU modules (R 00/01/02 CPU firmware versions ‘20’ and earlier, R 04/08/16/32/120 (EN) CPU firmware versions ‘52’ and earlier, R 08/16/32/120 SFCPU firmware versions ‘22’ and earlier, R 08/16/32/120 PCPU all versions, R 08/16/32/120 PSFCPU all versions, R 16/32/64 MTCPU all versions, Q03 UDECPU, Q 04/06/10/13/20/26/50/100 UDEHCPU serial number ‘22081’ and earlier , Q 03/04/06/13/26 UDVCPU serial number ‘22031’ and earlier, Q 04/06/13/26 UDPVCPU serial number ‘22031’ and earlier, Q 172/173 DCPU all versions, Q 172/173 DSCPU all versions, Q 170 MCPU all versions, Q 170 MSCPU all versions, L 02/06/26 CPU (-P) and L 26 CPU – (P) BT all versions) allows a remote unauthenticated attacker to stop the Ethernet communication functions of the products via a specially crafted packet, which may lead to a denial of service (DoS) condition .
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- melsec iq-r00cpu firmware 20,
- melsec iq-r01cpu firmware 20,
- melsec iq-r02cpu firmware 20,
- melsec iq-r04encpu firmware 52,
- melsec iq-r08encpu firmware 52,
- melsec iq-r08pcpu firmware -,
- melsec iq-r08psfcpu firmware -,
- melsec iq-r08sfcpu firmware 22,
- melsec iq-r120encpu firmware 52,
- melsec iq-r120pcpu firmware -,
- melsec iq-r120psfcpu firmware -,
- melsec iq-r120sfcpu firmware 22,
- melsec iq-r16encpu firmware 52,
- melsec iq-r16mtcpu firmware -,
- melsec iq-r16pcpu firmware -,
- melsec iq-r16psfcpu firmware -,
- melsec iq-r16sfcpu firmware 22,
- melsec iq-r32encpu firmware 52,
- melsec iq-r32mtcpu firmware -,
- melsec iq-r32pcpu firmware -,
- melsec iq-r32psfcpu firmware -,
- melsec iq-r32sfcpu firmware 22,
- melsec iq-r64mtcpu firmware -,
- melsec l02cpu-p firmware -,
- melsec l06cpu-p firmware -,
- melsec l26cpu-p firmware -,
- melsec l26cpu-pbt firmware -,
- melsec q-q03udecpu firmware 22081,
- melsec q-q03udvcpu firmware 22031,
- melsec q-q04udehcpu firmware 22081,
- melsec q-q04udpvcpu firmware 22031,
- melsec q-q04udvcpu firmware 22031,
- melsec q-q06udehcpu firmware 22081,
- melsec q-q06udpvcpu firmware 22031,
- melsec q-q100udehcpu firmware 22081,
- melsec q-q10udehcpu firmware 22081,
- melsec q-q13udehcpu firmware 22081,
- melsec q-q13udpvcpu firmware 22031,
- melsec q-q13udvcpu firmware 22031,
- melsec q-q170mcpu firmware -,
- melsec q-q170mscpu-s1 firmware -,
- melsec q-q172dcpu-s1 firmware -,
- melsec q-q172dscpu firmware -,
- melsec q-q173dcpu-s1 firmware -,
- melsec q-q173dscpu firmware -,
- melsec q-q20udehcpu firmware 22081,
- melsec q-q26udehcpu firmware 22081,
- melsec q-q26udpvcpu firmware 22031,
- melsec q-q26udvcpu firmware 22031,
- melsec q-q50udehcpu firmware 22081,
- melsec q-qmr-mq100 firmware -
Weaknesses
References
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: