← All Advisories

Packet Flood Prevents Mitsubishi MELSEC FX5-ENET/IP Internal Anomaly Detection from Running, Taking the Communication Function Offline

Last refreshed2026-09-29

Status: NEW  |  Advisory ID: CVE-2026-8806

Key Details

CVECVE-2026-8806
CVSS Score / Version8.7 (High) / CVSS v4.0
Updated2026-06-22
Classified asCWE-440 (Expected Behavior Violation)

What to Know

Expected Behavior Violation vulnerability in Mitsubishi Electric MELSEC iQ-F Series FX5-ENET/IP Ethernet Module FX5-ENET/IP all versions allows a remote attacker to cause a denial-of-service (DoS) condition in the affected product by continuously sending a large number of communication packets to the Ethernet port of the product in a short period of time, increasing the processing load of the product, preventing the internal anomaly-detection processing from being performed, and causing the communication function to stop.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-8806
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-8806