<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T19:12:38.412403+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-36712</id>
    <title>EUVD-2026-36712</title>
    <updated>2026-10-06T19:12:38.416089+00:00</updated>
    <content>EUVD-2026-36712</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-36712"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-5666</id>
    <title>fkie_cve-2020-5666</title>
    <updated>2026-10-06T19:12:38.416126+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Uncontrolled resource consumption vulnerability in MELSEC iQ-R Series CPU Modules (R00/01/02CPU Firmware versions from '05' to '19' and R04/08/16/32/120(EN)CPU Firmware versions from '35' to '51') allows a remote attacker to cause an error in a CPU unit via a specially crafted HTTP packet, which may lead to a denial-of-service (DoS) condition in execution of the program and its communication.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-5666"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-5527-cm29-m2f3</id>
    <title>GHSA-5527-cm29-m2f3</title>
    <updated>2026-10-06T19:12:38.416161+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Uncontrolled resource consumption vulnerability in MELSEC iQ-R Series CPU Modules (R00/01/02CPU Firmware versions from '05' to '19' and R04/08/16/32/120(EN)CPU Firmware versions from '35' to '51') allows a remote attacker to cause an error in a CPU unit via a specially crafted HTTP packet, which may lead to a denial-of-service (DoS) condition in execution of the program and its communication.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-5527-cm29-m2f3"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-5666</id>
    <title>gsd-2020-5666</title>
    <updated>2026-10-06T19:12:38.416180+00:00</updated>
    <content>gsd-2020-5666</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-5666"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-20-317-01</id>
    <title>ICSA-20-317-01 — Mitsubishi Electric MELSEC iQ-R Series</title>
    <updated>2026-10-06T19:12:38.416192+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A denial-of-service vulnerability due to uncontrolled resource consumption exists in MELSEC iQ-R series CPU modules. This vulnerability does not affect products when the To Use or Not to Use Web Server parameter of CPU modules is set to Not Use. The default setting is Not Use.CVE-2020-5666 has been assigned to this vulnerability. A CVSS v3 base score of 6.8 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:N/A:H).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-20-317-01"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2020-000072</id>
    <title>jvndb-2020-000072</title>
    <updated>2026-10-06T19:12:38.416212+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>MELSEC iQ-R series CPU modules provided by Mitsubishi Electric Corporation contain an uncontrolled resource consumption vulnerability (CWE-400).

According to the developer, in case of "To Use or Not to Use Web Server Settings" in the parameter of CPU modules are set to "Not Use", this issue does not occur. (The default setting is "Not Use".)

TOMOOMI IWATA, KINOSHITA SHUNICHI of NEC Corporation reported this vulnerability to IPA.
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2020-000072"/>
  </entry>
</feed>
