CVE-2024-1917

EUVD-2024-17639
Integer Overflow or Wraparound vulnerability in Mitsubishi Electric Corporation MELSEC-Q Series and MELSEC-L Series CPU modules allows a remote unauthenticated attacker to execute malicious code on a target product by sending a specially crafted packet.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 62%
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
mitsubishielectricmelsec_q-q03udecpu
𝑥
< xxxxx26061
ADP
mitsubishielectricmelsec_q-q04udehcpu
𝑥
< xxxxx26061
ADP
mitsubishielectricmelsec_q-q06udehcpu
𝑥
< xxxxx26061
ADP
mitsubishielectricmelsec_q-q10udehcpu
𝑥
< xxxxx26061
ADP
mitsubishielectricmelsec_q-q13udehcpu
𝑥
< xxxxx26061
ADP
mitsubishielectricmelsec_q-q20udehcpu
𝑥
< xxxxx26061
ADP
mitsubishielectricmelsec_q-q26udehcpu
𝑥
< xxxxx26061
ADP
mitsubishielectricmelsec_q-q50udehcpu
𝑥
< xxxxx26061
ADP
mitsubishielectricmelsec_q-q100udehcpu
𝑥
< xxxxx26061
ADP
mitsubishimelsec_q03udvcpu
𝑥
< xxxxx26061
ADP
mitsubishimelsec_q04udvcpu
𝑥
< xxxxx26061
ADP
mitsubishimelsec_q06udvcpu
𝑥
< xxxxx26061
ADP
mitsubishimelsec_q13udvcpu
𝑥
< xxxxx26061
ADP
mitsubishimelsec_q26udvcpu
𝑥
< xxxxx26061
ADP
mitsubishimelsec_q06udpvcpu
𝑥
< xxxxx26061
ADP
mitsubishimelsec_q13udpvcpu
𝑥
< xxxxx26061
ADP
mitsubishimelsec_q26udpvcpu
𝑥
< xxxxx26061
ADP
mitsubishielectricl02cpu-p
𝑥
< xxxxx26041
ADP
mitsubishimelsec_l06cpu\(-p\)
𝑥
< xxxxx26041
ADP
mitsubishimelsec_l26cpu\(-p\)
𝑥
< xxxxx26041
ADP
mitsubishielectricmelsec_l02cpu-p
𝑥
< xxxxx26041
ADP
mitsubishielectricmelsec_l06cpu-p
𝑥
< xxxxx26041
ADP
mitsubishielectricmelsec_l26cpu-p
𝑥
< xxxxx26041
ADP
mitsubishielectricl26cpu-bt
𝑥
< xxxxx26041
ADP
mitsubishielectricmelsec_l26cpu-pbt
𝑥
< xxxxx26041
ADP