三维电气MELSEiQ-RSeries

高位可租OT安全插件ID500549

简表

远程OT资产受脆弱性影响

描述性

Uncontrolled resource consumption vulnerability in MELSEC iQ-R Series modules (R00/01/02CPU firmware version '19' and earlier, R04/08/16/32/120 (EN) CPU firmware version '51' and earlier, R08/16/32/120SFCPU firmware version '22' and earlier, R08/16/32/120PCPU firmware version '25' and earlier, R08/16/32/120PSFCPU firmware version '06' and earlier, RJ71EN71 firmware version '47' and earlier, RJ71GF11-T2 firmware version '47' and earlier, RJ72GF15-T2 firmware version '07' and earlier, RJ71GP21-SX firmware version '47' and earlier, RJ71GP21S-SX firmware version '47' and earlier, and RJ71GN11-T2 firmware version '11' and earlier) allows a remote unauthenticated attacker to cause an error in a CPU unit and cause a denial-of-service (DoS) condition in execution of the program and its communication, or to cause a denial- of-service (DoS) condition in communication via the unit by receiving a specially crafted SLMP packet

插件只对Tenable.ot工作网站s/www.yyueer.com/products/tenable-ot获取更多信息

求解

下文原由网络安全基础设施安全局创建原创可见于CISA.gov

三菱电机发布iQ-RSeries固件版本解决这一问题

R00/01/02CPU:固件版本20或20
R04/08/1632/120
R08/16/32/120SFCPU:固件23版
R08/16/32/120PCU:固件26版或以后
R08/16/32/120PSFPU:固件版本07或以后
RJ71EN71:固件版本48或以后
RJ71GF11-T2固件48版或后
RJ72GF15-T2固件版08或后
RJ71GP21-SX:固件48版或后
RJ71GP21S-SX:固件48版或后
RJ71GN11-T2固件版本12或后

详情请见三菱网站的脆弱性信息

三菱电厂还建议采取下列做法,以尽量减少利用这一漏洞的风险:

防火墙或虚拟专用网络等,防止需要上网时未经授权访问
局域网内使用和阻塞访问不受信任网络和主机防火墙

并见

https://jvn.jp/vu/JVNVU95980140/index.html

https://us-cert.cisa.gov/ics/advisories/icsa-20-324-05

http://www.nessus.org/u?fba3a9e6

http://www.nessus.org/u?7beb54c5

插件细节

严重性 :高位

身份证 :50549

版本化 :1.5

类型 :远程

家庭问题 :可调用.ot

发布 :2/7/2022

更新 :11/13/2023

风险信息

VPR

风险因子 :低频

分数 :3.6

CVSS v2

风险因子 :高位

基础评分 :7.8

时间评分 :5.8

向量 :CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C

CVSS评分源 :CVE-2020-5668

CVSSv3

风险因子 :高位

基础评分 :7.5

时间评分 :6.5

向量 :CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

时间向量 :CVSS:3.0/E:U/RL:O/RC:C

漏洞信息

CPE系统 :cpe:/o:mitsubishielectric:r00cpu_firmware,cpe:/o:mitsubishielectric:r01cpu_firmware,cpe:/o:mitsubishielectric:r02cpu_firmware,cpe:/o:mitsubishielectric:r04cpu_firmware,cpe:/o:mitsubishielectric:r08cpu_firmware,cpe:/o:mitsubishielectric:r16cpu_firmware,cpe:/o:mitsubishielectric:r32cpu_firmware,cpe:/o:mitsubishielectric:r120cpu_firmware,cpe:/o:mitsubishielectric:r08sfcpu_firmware,cpe:/o:mitsubishielectric:r16sfcpu_firmware,cpe:/o:mitsubishielectric:r32sfcpu_firmware,cpe:/o:mitsubishielectric:r120sfcpu_firmware,cpe:/o:mitsubishielectric:r08pcpu_firmware,cpe:/o:mitsubishielectric:r16pcpu_firmware,cpe:/o:mitsubishielectric:r32pcpu_firmware,cpe:/o:mitsubishielectric:r120pcpu_firmware,cpe:/o:mitsubishielectric:r08psfcpu_firmware,cpe:/o:mitsubishielectric:r16psfcpu_firmware,cpe:/o:mitsubishielectric:r32psfcpu_firmware,cpe:/o:mitsubishielectric:r120psfcpu_firmware,cpe:/o:mitsubishielectric:rj71en71_firmware,cpe:/o:mitsubishielectric:rj71gf11-t2_firmware,cpe:/o:mitsubishielectric:rj72gf15-t2_firmware,cpe:/o:mitsubishielectric:rj71gp21-sx_firmware,cpe:/o:mitsubishielectric:rj71gp21s-sx_firmware,cpe:/o:mitsubishielectric:rj71c24-r2_firmware,cpe:/o:mitsubishielectric:rj71c24-r4_firmware,cpe:/o:mitsubishielectric:rj71gn11-t2_firmware

需要kb项 :Tenable.ot/Mitsubishi

开发易斯 :无已知利用

补丁发布日期 :11/2020

漏洞发布日期 :11/2020

参考信息

CVE系统 :CVE-2020-5668

CWE系统 :400

Baidu
map