Mitsubishi Electric issued a security advisory for MELSEC iQ-F Series communications modules—FX5-ENET/IP Ethernet Module and FX5-EIP EtherNet/IP Module—warning of multiple vulnerabilities in their Ethernet/EtherNet/IP functions that can be triggered remotely to cause denial of service (DoS). The Canadian Centre for Cyber Security relayed the advisory and urged operators to review Mitsubishi Electric’s guidance and apply the recommended updates/mitigations, given the operational impact to industrial control environments.
Two CVEs describe the primary DoS conditions: CVE-2026-1874 affects FX5-ENET/IP (versions 1.106 and prior) and FX5-EIP (all versions) and is characterized as an always-incorrect control flow implementation issue (CWE-670), while CVE-2026-1875 affects FX5-EIP (all versions) and is described as improper resource shutdown or release (CWE-404). In both cases, an unauthenticated remote attacker can repeatedly send UDP packets to induce a DoS state, and device reset is required for recovery; CVSS v4.0 vectors indicate network-reachable, low-complexity attacks with high availability impact.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
3 events from the most recent confirmed update back to the earliest known activity.
The Canadian Centre for Cyber Security published advisory AV26-191 highlighting Mitsubishi Electric's March 2 security advisory and urging users and administrators to review the notice and apply necessary updates. The alert concerned DoS vulnerabilities affecting MELSEC iQ-F Series Ethernet modules.
On March 3, 2026, CVE records were published for two Mitsubishi Electric MELSEC iQ-F Series DoS vulnerabilities: CVE-2026-1874 affecting FX5-ENET/IP and FX5-EIP, and CVE-2026-1875 affecting FX5-EIP. The disclosures included technical classifications, CVSS details, and references to JVN and Mitsubishi Electric PSIRT advisories.
Mitsubishi Electric published a security advisory addressing multiple denial-of-service vulnerabilities in MELSEC iQ-F Series modules, including the FX5-ENET/IP Ethernet Module and FX5-EIP EtherNet/IP Module. The flaws can be triggered remotely by continuously sending UDP packets, and affected devices may require a system reset to recover.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
6 references tracked. Mallory keeps watching after this page renders.
sentinelone.com
Open sourcecyber.gc.ca
Open sourcecvefeed.io
Open sourcecvefeed.io
Open sourcemitsubishielectric.com
Open sourcemitsubishielectric.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.