Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-2399— Denial of Service (DoS) Vulnerability in Mitsubishi Electric CNC Series

CVSS 5.9 · Medium EPSS 0.08% · P23
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-2399

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Denial of Service (DoS) Vulnerability in Mitsubishi Electric CNC Series
Source: NVD (National Vulnerability Database)
Vulnerability Description
Improper Validation of Specified Index, Position, or Offset in Input vulnerability in Mitsubishi Electric CNC M800V Series M800VW and M800VS, M80V Series M80V and M80VW, M800 Series M800W and M800S, M80 Series M80 and M80W, E80 Series E80, C80 Series C80, M700V Series M750VW, M720VW, 730VW, M720VS, M730VS, and M750VS, M70V Series M70V, E70 Series E70, and Software Tools NC Trainer2 and NC Trainer2 plus allows a remote attacker to cause an out-of-bounds read, resulting in a denial-of-service condition by sending specially crafted packets to TCP port 683.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
CWE-1285
Source: NVD (National Vulnerability Database)
Vulnerability Title
Mitsubishi Electric多款产品 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Mitsubishi Electric CNC Series是日本三菱电机(Mitsubishi Electric)公司的一系列数控控制系统。 Mitsubishi Electric多款产品存在安全漏洞,该漏洞源于对输入中的指定索引、位置或偏移验证不当,可能导致远程攻击者通过发送特制数据包造成越界读取,引发拒绝服务。以下产品受到影响:Mitsubishi Electric CNC M800V Series M800VW和M800VS、M80V Series M80V和M80VW、M800 Series M
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
Mitsubishi Electric CorporationMitsubishi Electric CNC M800V Series M800VW System Number BND-2051W000 versions BB and prior -
Mitsubishi Electric CorporationMitsubishi Electric CNC M800V Series M800VS System Number BND-2052W000 versions BB and prior -
Mitsubishi Electric CorporationMitsubishi Electric CNC M80V Series M80V System Number BND-2053W000 versions BB and prior -
Mitsubishi Electric CorporationMitsubishi Electric CNC M80V Series M80VW System Number BND-2054W000 versions BB and prior -
Mitsubishi Electric CorporationMitsubishi Electric CNC M800 Series M800W System Number BND-2005W000 versions FM and prior -
Mitsubishi Electric CorporationMitsubishi Electric CNC M800 Series M800S System Number BND-2006W000 versions FM and prior -
Mitsubishi Electric CorporationMitsubishi Electric CNC M80 Series M80 System Number BND-2007W000 versions FM and prior -
Mitsubishi Electric CorporationMitsubishi Electric CNC M80 Series M80W System Number BND-2008W000 versions FM and prior -
Mitsubishi Electric CorporationMitsubishi Electric CNC E80 Series E80 System Number BND-2009W000 versions FM and prior -
Mitsubishi Electric CorporationMitsubishi Electric CNC C80 Series C80 System Number BND-2036W000 all versions -
Mitsubishi Electric CorporationMitsubishi Electric CNC M700V Series M750VW System Number BND-1015W002 all versions -
Mitsubishi Electric CorporationMitsubishi Electric CNC M700V Series M720VW System Number BND-1015W000 all versions -
Mitsubishi Electric CorporationMitsubishi Electric CNC M700V Series M730VW System Number BND-1015W000 all versions -
Mitsubishi Electric CorporationMitsubishi Electric CNC M700V Series M720VS System Number BND-1012W000 all versions -
Mitsubishi Electric CorporationMitsubishi Electric CNC M700V Series M730VS System Number BND-1012W000 all versions -
Mitsubishi Electric CorporationMitsubishi Electric CNC M700V Series M750VS System Number BND-1012W002 all versions -
Mitsubishi Electric CorporationMitsubishi Electric CNC M70V Series M70V System Number BND-1018W000 all versions -
Mitsubishi Electric CorporationMitsubishi Electric CNC E70 Series E70 System Number BND-1022W000 all versions -
Mitsubishi Electric CorporationMitsubishi Electric CNC Software Tools NC Trainer2 System Number BND-1802W000 all versions -
Mitsubishi Electric CorporationMitsubishi Electric CNC Software Tools NC Trainer2 plus System Number BND-1803W000 all versions -

II. Public POCs for CVE-2025-2399

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-2399

登录查看更多情报信息。

IV. Related Vulnerabilities

V. Comments for CVE-2025-2399

No comments yet


Leave a comment