Skip to content
Threat Feed

Vendor

Mitsubishi Electric

4 briefs RSS
high advisory

Authentication Bypass Vulnerability in Mitsubishi Electric GX Works3

An incorrect implementation of the authentication algorithm (CVE-2026-15688) in Mitsubishi Electric GX Works3 and Motion Control Settings allows local attackers to bypass block password protections and manipulate control programs.

GX Works3 +1 industrial-control-systems cve authentication-bypass
1t 1c
medium advisory

Mitsubishi Electric CC-Link IE TSN Communication Protocol Vulnerability

A vulnerability in the Mitsubishi Electric CC-Link IE TSN Communication Protocol (CVE-2026-13584) allows network-adjacent attackers to disrupt control functions or tamper with data via specially crafted packets.

MELSEC MX Controller +27 ics ot vulnerability cve-2026-13584
1t 1c
medium advisory

Denial of Service Vulnerability in Mitsubishi Electric CNC Series

An out-of-bounds read vulnerability (CVE-2025-2399) in Mitsubishi Electric CNC Series controllers allows remote attackers to trigger a denial-of-service condition via crafted packets sent to TCP port 683.

M800VW +17 ics dos industrial-control-systems critical-infrastructure cve-2025-2399
low advisory

Denial of Service Vulnerability in Mitsubishi Electric FA Products

A vulnerability in the Ethernet function of multiple Mitsubishi Electric factory automation products allows remote attackers to trigger a denial-of-service condition via specially crafted UDP packets.

CC-Link IE TSN Remote I/O module +11 industrial-control-systems denial-of-service cve-2025-3511
1t 1c