Rewterz
Rewterz Threat Alert – Global Malicious Spam Campaign Using Black Lives Matter as a Lure
June 17, 2020
Rewterz
Rewterz Threat Alert – Latest Covid-19 Malicious URLs
June 17, 2020

Rewterz Threat Advisory – CVE-2020-13238 – ICS: Mitsubishi Electric MELSEC iQ-R series

Severity

Medium

Analysis Summary

Mitsubishi MELSEC iQ-R Series PLCs with firmware 33 allow attackers to halt the industrial process by sending an unauthenticated crafted packet over the network, because this denial of service attack consumes excessive CPU time. After halting, physical access to the PLC is required in order to restore production.

Impact

Resource Exhaustion

Affected Vendors

Mitsubishi Electric

Affected Products

MELSEC iQ-R series

Remediation

Refer to vendor’s advisory for the complete list of affected products and upgraded patches.

https://www.us-cert.gov/ics/advisories/icsa-20-161-02