---
id: CVE-2025-3511
title: >-
  Improper Validation of Specified Quantity in Input vulnerability in Mitsubishi
  Electric Corporation CC-Link IE TSN Remote I/O module, CC-Link IE TSN
  Analog-Digital Converter module, CC-Link IE TSN Digital-Analog Converter
  module, CC-Link…
summary: >-
  Improper Validation of Specified Quantity in Input vulnerability in Mitsubishi
  Electric Corporation CC-Link IE TSN Remote I/O module, CC-Link IE TSN
  Analog-Digital Converter module, CC-Link IE TSN Digital-Analog Converter
  module, CC-Link…
severity: high
cvss: 7.5
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'
cwe:
  - CWE-1284
published: '2025-04-25'
updated: '2026-08-27'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-3511'
references:
  - url: 'https://jvn.jp/vu/JVNVU96620683/'
    label: Mitsubishielectric.Psirt@yd.MitsubishiElectric.co.jp
  - url: 'https://www.cisa.gov/news-events/ics-advisories/icsa-25-128-03'
    label: Mitsubishielectric.Psirt@yd.MitsubishiElectric.co.jp
  - url: 'https://www.mitsubishielectric.com/psirt/vulnerability/pdf/2025-001_en.pdf'
    label: Mitsubishielectric.Psirt@yd.MitsubishiElectric.co.jp
tags:
  - nvd
epss: 0.00906
epssPercentile: 0.5812
ingestedAt: '2026-08-27T06:56:55.698Z'
---

## Overview

Improper Validation of Specified Quantity in Input vulnerability in Mitsubishi Electric Corporation CC-Link IE TSN Remote I/O module, CC-Link IE TSN Analog-Digital Converter module, CC-Link IE TSN Digital-Analog Converter module, CC-Link IE TSN FPGA module, CC-Link IE TSN Remote Station Communication LSI CP620 with GbE-PHY, MELSEC iQ-R Series CC-Link IE TSN Master/Local Module, MELSEC iQ-R Series Ethernet Interface Module, CC-Link IE TSN Master/Local Station Communication LSI CP610, MELSEC iQ-F Series FX5 CC-Link IE TSN Master/Local Module, MELSEC iQ-F Series FX5 Ethernet Module, MELSEC iQ-F Series FX5-ENET/IP Ethernet Module, and MELSEC iQ-R Series CPU module allows a remote unauthenticated attacker to cause a Denial of Service condition in the products by sending specially crafted UDP packets.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
