CVE-2020-16850

HIGHCVSS 7.5/10EPSS 2.12%

Last modified

CVE-2020-16850 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Mitsubishi MELSEC iQ-R Series PLCs with firmware 49 allow an unauthenticated attacker to halt the industrial process by sending a crafted packet over the network. This denial of service attack exposes Improper Input Validation. EPSS estimates a 2.12% chance of exploitation in the next 30 days.

Description

Mitsubishi MELSEC iQ-R Series PLCs with firmware 49 allow an unauthenticated attacker to halt the industrial process by sending a crafted packet over the network. This denial of service attack exposes Improper Input Validation. After halting, physical access to the PLC is required in order to restore production, and the device state is lost. This is related to R04CPU, RJ71GF11-T2, R04CPU, and RJ71GF11-T2.

Metrics

CVSS 3.1
7.5/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS Probability
2.12%

79.5th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
MitsubishielectricR00cpu Firmware<= 20
MitsubishielectricR01cpu Firmware<= 20
MitsubishielectricR02cpu Firmware<= 20
MitsubishielectricR04cpu Firmware<= 52
MitsubishielectricR08cpu Firmware<= 52
MitsubishielectricR16cpu Firmware<= 52
MitsubishielectricR32cpu Firmware<= 52
MitsubishielectricR120cpu Firmware<= 52
MitsubishielectricR08sfcpu Firmware<= 22
MitsubishielectricR16sfcpu Firmware<= 22
MitsubishielectricR32sfcpu Firmware<= 22
MitsubishielectricR120sfcpu Firmware<= 22
MitsubishielectricR08pcpu FirmwareAll versions
MitsubishielectricR16pcpu FirmwareAll versions
MitsubishielectricR32pcpu FirmwareAll versions
MitsubishielectricR120pcpu FirmwareAll versions
MitsubishielectricR16mtcpu FirmwareAll versions
MitsubishielectricR32mtcpu FirmwareAll versions
MitsubishielectricR64mtcpu FirmwareAll versions

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2020-16850?
Mitsubishi MELSEC iQ-R Series PLCs with firmware 49 allow an unauthenticated attacker to halt the industrial process by sending a crafted packet over the network. This denial of service attack exposes Improper Input Validation. After halting, physical access to the PLC is required in order to restore production, and the device state is lost. This is related to R04CPU, RJ71GF11-T2, R04CPU, and RJ71GF11-T2.
How severe is CVE-2020-16850?
CVE-2020-16850 has a CVSS score of 7.5/10 (HIGH severity). The EPSS model estimates a 2.12% probability of exploitation in the next 30 days.
How do I fix CVE-2020-16850?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2020-16850?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST