CVE-2024-1916

Integer Overflow or Wraparound vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remote unauthenticated attacker to execute malicious code on a target product by sending a specially crafted packet.
Configurations

No configuration.

History

21 Nov 2024, 08:51

Type Values Removed Values Added
References () https://jvn.jp/vu/JVNVU99690199/ - () https://jvn.jp/vu/JVNVU99690199/ -
References () https://www.cisa.gov/news-events/ics-advisories/icsa-24-074-14 - () https://www.cisa.gov/news-events/ics-advisories/icsa-24-074-14 -
References () https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2023-024_en.pdf - () https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2023-024_en.pdf -
Summary
  • (es) Vulnerabilidad de desbordamiento de enteros o envoltura en los módulos de CPU de las series MELSEC-Q y MELSEC-L de Mitsubishi Electric Corporation permite que un atacante remoto no autenticado ejecute código malicioso en un producto objetivo enviando un paquete especialmente manipulado.

15 Mar 2024, 01:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-15 01:15

Updated : 2024-11-21 08:51


NVD link : CVE-2024-1916

Mitre link : CVE-2024-1916

CVE.ORG link : CVE-2024-1916


JSON object : View

Products Affected

No product.

CWE
CWE-190

Integer Overflow or Wraparound