Vulnerabilities > CVE-2015-3938 - Resource Management Errors vulnerability in Mitsubishi Electric Melsec Fx3G

047910
CVSS 7.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
network
low complexity
mitsubishi-electric
CWE-399

Summary

The HTTP application on Mitsubishi Electric MELSEC FX3G PLC devices before April 2015 allows remote attackers to cause a denial of service (device outage) via a long parameter.

Vulnerable Configurations

Part Description Count
Hardware
Mitsubishi_Electric
1

Common Weakness Enumeration (CWE)

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/133780/mitsubishimelsec-dos.txt
idPACKETSTORM:133780
last seen2016-12-05
published2015-09-30
reporterRalf Spenneberg
sourcehttps://packetstormsecurity.com/files/133780/Mitsubishi-Melsec-FX3G-24M-Denial-Of-Service.html
titleMitsubishi Melsec FX3G-24M Denial Of Service