Cyber Resilience
← All news
Confirmed

Mitsubishi Electric Multiple FA Products (Update D)

Our takeCISA reports active exploitation of a DoS vulnerability in Mitsubishi Electric CC-Link IE TSN Remote I/O module N via crafted UDP packets. Update immediately if you operate these FA products.
Sources (2)
What this means for you — Security leader:CISA reports active exploitation of a UDP-packet vulnerability in Mitsubishi Electric CC-Link IE TSN Remote I/O module N that can cause DoS, timeout, or communication delay. Update immediately if you operate the affected FA/OT products.
What this means for you — Lean IT orgs:Mitsubishi Electric released an update for a vulnerability in their CC-Link IE TSN Remote I/O module that attackers are actively exploiting to cause denial-of-service. Apply the patch as soon as your vendor or integrator makes it available.
What this means for you — MSP:CISA reports active exploitation of a remote DoS vulnerability in Mitsubishi Electric CC-Link IE TSN Remote I/O module N. Check client OT/FA environments for these modules and prioritize the vendor update.
What this means for you — Researcher:CISA reports active exploitation of a remote UDP-packet vulnerability in Mitsubishi Electric CC-Link IE TSN Remote I/O module N that can trigger DoS, timeout, or comms delay. See ICSA-25-128-03 for affected versions and mitigations.