Security Advisory

CVE-2025-5514

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-08-25 05:55:32
Last updated 2025-08-26 04:19:57
Assigner Mitsubishi
State PUBLISHED

Description

Improper Handling of Length Parameter Inconsistency vulnerability in web server function on Mitsubishi Electric Corporation MELSEC iQ-F Series CPU module allows a remote unauthenticated attacker to delay the processing of the web server function and prevent legitimate users from utilizing the web server function, by sending a specially crafted HTTP request.