Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
VOLERION
Volerion Security Research

NOT DEFERRED DATABASE

VULNERABILITIES

CVE-2026-8805 Details

ANALYZED


This CVE record has been analyzed and enriched by NVDAPI.com as an independent party.

Description

Integer Overflow or Wraparound vulnerability in the EtherNet/IP function of Mitsubishi Electric MELSEC iQ-F Series FX5-EIP EtherNet/IP module FX5-EIP versions 1.000 and prior allows a remote attacker to cause a denial-of-service (DoS) condition in the affected product by rapidly establishing a large number of TCP connections to it, resulting in an inconsistency in the product's internal connection management process and triggering improper memory access.

Metrics

CVSS 3.x Severity and Vector Strings:

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.

Weakness Enumeration

CWE-IDCWE NameSource
CWE-190Integer Overflow or Wraparound[email protected]

Affected Products

ProductVersions
Mitsubishi Electric MELSEC iQ-F FX5-EIP
<= 1.000

CPE

  • No CPEs found in CPE dictionary for this product.

Remediation

  • Upgrade: 1.001moderate efforthttps://www.mitsubishielectric.com/fa/download/index.html
  • Workaround:low effort

    Use a firewall, virtual private network (VPN), etc. to prevent unauthorized access when internet access is required.

  • Workaround:low effort

    Use the affected product within a LAN and block access from untrusted networks and hosts through firewalls.

  • Workaround:low effort

    Use the IP filter function of the affected product to block access from untrusted hosts. For details on the IP filter function, refer to "13.1 IP Filter Function" in the MELSEC iQ-F FX5 User’s Manual (Communication).

  • Workaround:low effort

    Restrict physical access to the affected product, as well as to PCs and network devices to which it is connected.

  • Workaround:low effort

    Install anti-virus software on PCs that can access the affected product.

Change History

2 change records found show changes


QUICK INFO

CVE Dictionary Entry:
CVE-2026-8805
NVD Published Date:
Jun 19, 2026
NVD Last Modified:
Jun 22, 2026
Source:
[email protected]
CVE-2026-8805 Details - Not Deferred