7.5
CVE-2019-6535
- EPSS 1.49%
- Veröffentlicht 05.02.2019 19:29:00
- Zuletzt bearbeitet 26.06.2025 18:15:21
- Quelle ics-cert@hq.dhs.gov
- CVE-Watchlists
- Unerledigt
Mitsubishi Electric Q03/04/06/13/26UDVCPU: serial number 20081 and prior, Q04/06/13/26UDPVCPU: serial number 20081 and prior, and Q03UDECPU, Q04/06/10/13/20/26/50/100UDEHCPU: serial number 20101 and prior. A remote attacker can send specific bytes over Port 5007 that will result in an Ethernet stack crash and disruption to USB communication.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mitsubishielectric ≫ Q03udvcpu Firmware Version <= 20081
Mitsubishielectric ≫ Q04udvcpu Firmware Version <= 20081
Mitsubishielectric ≫ Q06udvcpu Firmware Version <= 20081
Mitsubishielectric ≫ Q13udvcpu Firmware Version <= 20081
Mitsubishielectric ≫ Q26udvcpu Firmware Version <= 20081
Mitsubishielectric ≫ Q04udpvcpu Firmware Version <= 20081
Mitsubishielectric ≫ Q06udpvcpu Firmware Version <= 20081
Mitsubishielectric ≫ Q13udpvcpu Firmware Version <= 20081
Mitsubishielectric ≫ Q26udpvcpu Firmware Version <= 20081
Mitsubishielectric ≫ Q03udecpu Firmware Version <= 20101
Mitsubishielectric ≫ Q04udehcpu Firmware Version <= 20101
Mitsubishielectric ≫ Q06udehcpu Firmware Version <= 20101
Mitsubishielectric ≫ Q10udehcpu Firmware Version <= 20101
Mitsubishielectric ≫ Q13udehcpu Firmware Version <= 20101
Mitsubishielectric ≫ Q20udehcpu Firmware Version <= 20101
Mitsubishielectric ≫ Q26udehcpu Firmware Version <= 20101
Mitsubishielectric ≫ Q50udehcpu Firmware Version <= 20101
Mitsubishielectric ≫ Q100udehcpu Firmware Version <= 20101
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.49% | 0.808 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:P
|
| ics-cert@hq.dhs.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
CWE-400 Uncontrolled Resource Consumption
The product does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.