CVE-2023-4562
📋 TL;DR
This vulnerability allows remote unauthenticated attackers to read sequence programs from or write malicious programs/data to Mitsubishi Electric MELSEC-F Series main modules without authentication. It affects industrial control systems using these PLC modules, potentially compromising manufacturing, infrastructure, or critical processes.
💻 Affected Systems
- Mitsubishi Electric MELSEC-F Series main modules
📦 What is this software?
Fx3g 14 Mr\/ds Firmware by Mitsubishielectric
Fx3g 14 Mr\/es Firmware by Mitsubishielectric
Fx3g 14 Mt\/ds Firmware by Mitsubishielectric
Fx3g 14 Mt\/dss Firmware by Mitsubishielectric
Fx3g 14 Mt\/es Firmware by Mitsubishielectric
Fx3g 14 Mt\/ess Firmware by Mitsubishielectric
Fx3g 14mr\/ds Firmware by Mitsubishielectric
Fx3g 14mr\/es A Firmware by Mitsubishielectric
Fx3g 14mr\/es Firmware by Mitsubishielectric
Fx3g 14mt\/ds Firmware by Mitsubishielectric
Fx3g 14mt\/dss Firmware by Mitsubishielectric
Fx3g 14mt\/es A Firmware by Mitsubishielectric
Fx3g 14mt\/es Firmware by Mitsubishielectric
Fx3g 14mt\/ess Firmware by Mitsubishielectric
Fx3g 232adp\( Mb\) Firmware by Mitsubishielectric
Fx3g 24 Mr\/ds Firmware by Mitsubishielectric
Fx3g 24 Mr\/es Firmware by Mitsubishielectric
Fx3g 24 Mt\/ds Firmware by Mitsubishielectric
Fx3g 24 Mt\/dss Firmware by Mitsubishielectric
Fx3g 24 Mt\/es Firmware by Mitsubishielectric
Fx3g 24 Mt\/ess Firmware by Mitsubishielectric
Fx3g 24mr\/ds Firmware by Mitsubishielectric
Fx3g 24mr\/es A Firmware by Mitsubishielectric
Fx3g 24mr\/es Firmware by Mitsubishielectric
Fx3g 24mt\/ds Firmware by Mitsubishielectric
Fx3g 24mt\/dss Firmware by Mitsubishielectric
Fx3g 24mt\/es A Firmware by Mitsubishielectric
Fx3g 24mt\/es Firmware by Mitsubishielectric
Fx3g 24mt\/ess Firmware by Mitsubishielectric
Fx3g 32 Mt\/dss Firmware by Mitsubishielectric
Fx3g 3a Adp Firmware by Mitsubishielectric
Fx3g 40 Mr\/ds Firmware by Mitsubishielectric
Fx3g 40 Mr\/es Firmware by Mitsubishielectric
Fx3g 40 Mt\/ds Firmware by Mitsubishielectric
Fx3g 40 Mt\/dss Firmware by Mitsubishielectric
Fx3g 40 Mt\/es Firmware by Mitsubishielectric
Fx3g 40 Mt\/ess Firmware by Mitsubishielectric
Fx3g 40mr\/ds Firmware by Mitsubishielectric
Fx3g 40mr\/es A Firmware by Mitsubishielectric
Fx3g 40mr\/es Firmware by Mitsubishielectric
Fx3g 40mt\/ds Firmware by Mitsubishielectric
Fx3g 40mt\/dss Firmware by Mitsubishielectric
Fx3g 40mt\/es A Firmware by Mitsubishielectric
Fx3g 40mt\/es Firmware by Mitsubishielectric
Fx3g 40mt\/ess Firmware by Mitsubishielectric
Fx3g 485adp\( Mb\) Firmware by Mitsubishielectric
Fx3g 4ad Adp Firmware by Mitsubishielectric
Fx3g 4ad Pt Adp Firmware by Mitsubishielectric
Fx3g 4ad Ptw Adp Firmware by Mitsubishielectric
Fx3g 4ad Tc Adp Firmware by Mitsubishielectric
Fx3g 4da Adp Firmware by Mitsubishielectric
Fx3g 4da Pnk Adp Firmware by Mitsubishielectric
Fx3g 60 Mr\/ds Firmware by Mitsubishielectric
Fx3g 60 Mr\/es Firmware by Mitsubishielectric
Fx3g 60 Mt\/ds Firmware by Mitsubishielectric
Fx3g 60 Mt\/dss Firmware by Mitsubishielectric
Fx3g 60 Mt\/es Firmware by Mitsubishielectric
Fx3g 60 Mt\/ess Firmware by Mitsubishielectric
Fx3g 60mr\/ds Firmware by Mitsubishielectric
Fx3g 60mr\/es A Firmware by Mitsubishielectric
Fx3g 60mr\/es Firmware by Mitsubishielectric
Fx3g 60mt\/ds Firmware by Mitsubishielectric
Fx3g 60mt\/dss Firmware by Mitsubishielectric
Fx3g 60mt\/es A Firmware by Mitsubishielectric
Fx3g 60mt\/es Firmware by Mitsubishielectric
Fx3g 60mt\/ess Firmware by Mitsubishielectric
Fx3g Cnv Adp Firmware by Mitsubishielectric
Fx3ga 24mr Cm Firmware by Mitsubishielectric
Fx3ga 24mt Cm Firmware by Mitsubishielectric
Fx3ga 40mr Cm Firmware by Mitsubishielectric
Fx3ga 40mt Cm Firmware by Mitsubishielectric
Fx3ga 60mr Cm Firmware by Mitsubishielectric
Fx3ga 60mt Cm Firmware by Mitsubishielectric
Fx3gc 32mt\/d Firmware by Mitsubishielectric
Fx3gc 32mt\/dss Firmware by Mitsubishielectric
Fx3gc Firmware by Mitsubishielectric
Fx3ge 24mr\/ds Firmware by Mitsubishielectric
Fx3ge 24mr\/es Firmware by Mitsubishielectric
Fx3ge 24mt\/ds Firmware by Mitsubishielectric
Fx3ge 24mt\/dss Firmware by Mitsubishielectric
Fx3ge 24mt\/es Firmware by Mitsubishielectric
Fx3ge 24mt\/ess Firmware by Mitsubishielectric
Fx3ge 40mr\/ds Firmware by Mitsubishielectric
Fx3ge 40mr\/es Firmware by Mitsubishielectric
Fx3ge 40mt\/ds Firmware by Mitsubishielectric
Fx3ge 40mt\/dss Firmware by Mitsubishielectric
Fx3ge 40mt\/es Firmware by Mitsubishielectric
Fx3ge 40mt\/ess Firmware by Mitsubishielectric
Fx3s 10mr\/ds Firmware by Mitsubishielectric
Fx3s 10mr\/es Firmware by Mitsubishielectric
Fx3s 10mt\/ds Firmware by Mitsubishielectric
Fx3s 10mt\/dss Firmware by Mitsubishielectric
Fx3s 10mt\/es Firmware by Mitsubishielectric
Fx3s 10mt\/ess Firmware by Mitsubishielectric
Fx3s 14mr\/ds Firmware by Mitsubishielectric
Fx3s 14mr\/es Firmware by Mitsubishielectric
Fx3s 14mt\/ds Firmware by Mitsubishielectric
Fx3s 14mt\/dss Firmware by Mitsubishielectric
Fx3s 14mt\/es Firmware by Mitsubishielectric
Fx3s 14mt\/ess Firmware by Mitsubishielectric
Fx3s 20mr\/ds Firmware by Mitsubishielectric
Fx3s 20mr\/es Firmware by Mitsubishielectric
Fx3s 20mt\/ds Firmware by Mitsubishielectric
Fx3s 20mt\/dss Firmware by Mitsubishielectric
Fx3s 20mt\/es Firmware by Mitsubishielectric
Fx3s 20mt\/ess Firmware by Mitsubishielectric
Fx3s 30mr\/ds Firmware by Mitsubishielectric
Fx3s 30mr\/es 2ad Firmware by Mitsubishielectric
Fx3s 30mr\/es Firmware by Mitsubishielectric
Fx3s 30mt\/ds Firmware by Mitsubishielectric
Fx3s 30mt\/dss Firmware by Mitsubishielectric
Fx3s 30mt\/es 2ad Firmware by Mitsubishielectric
Fx3s 30mt\/es Firmware by Mitsubishielectric
Fx3s 30mt\/ess 2ad Firmware by Mitsubishielectric
Fx3s 30mt\/ess Firmware by Mitsubishielectric
Fx3sa 10mr Cm Firmware by Mitsubishielectric
Fx3sa 10mt Cm Firmware by Mitsubishielectric
Fx3sa 14mr Cm Firmware by Mitsubishielectric
Fx3sa 14mt Cm Firmware by Mitsubishielectric
Fx3sa 20mr Cm Firmware by Mitsubishielectric
Fx3sa 20mt Cm Firmware by Mitsubishielectric
Fx3sa 30mr Cm Firmware by Mitsubishielectric
Fx3sa 30mt Cm Firmware by Mitsubishielectric
Fx3u 128mr\/es A Firmware by Mitsubishielectric
Fx3u 128mr\/es Firmware by Mitsubishielectric
Fx3u 128mt\/es A Firmware by Mitsubishielectric
Fx3u 128mt\/es Firmware by Mitsubishielectric
Fx3u 128mt\/ess Firmware by Mitsubishielectric
Fx3u 16mr\/ds Firmware by Mitsubishielectric
Fx3u 16mr\/es A Firmware by Mitsubishielectric
Fx3u 16mr\/es Firmware by Mitsubishielectric
Fx3u 16mt\/ds Firmware by Mitsubishielectric
Fx3u 16mt\/dss Firmware by Mitsubishielectric
Fx3u 16mt\/es A Firmware by Mitsubishielectric
Fx3u 16mt\/es Firmware by Mitsubishielectric
Fx3u 16mt\/ess Firmware by Mitsubishielectric
Fx3u 32mr\/ds Firmware by Mitsubishielectric
Fx3u 32mr\/es A Firmware by Mitsubishielectric
Fx3u 32mr\/es Firmware by Mitsubishielectric
Fx3u 32mr\/ua1 Firmware by Mitsubishielectric
Fx3u 32ms\/es Firmware by Mitsubishielectric
Fx3u 32mt\/ds Firmware by Mitsubishielectric
Fx3u 32mt\/dss Firmware by Mitsubishielectric
Fx3u 32mt\/es A Firmware by Mitsubishielectric
Fx3u 32mt\/es Firmware by Mitsubishielectric
Fx3u 32mt\/ess Firmware by Mitsubishielectric
Fx3u 48mr\/ds Firmware by Mitsubishielectric
Fx3u 48mr\/es A Firmware by Mitsubishielectric
Fx3u 48mr\/es Firmware by Mitsubishielectric
Fx3u 48mt\/ds Firmware by Mitsubishielectric
Fx3u 48mt\/dss Firmware by Mitsubishielectric
Fx3u 48mt\/es A Firmware by Mitsubishielectric
Fx3u 48mt\/es Firmware by Mitsubishielectric
Fx3u 48mt\/ess Firmware by Mitsubishielectric
Fx3u 64mr\/ds Firmware by Mitsubishielectric
Fx3u 64mr\/es A Firmware by Mitsubishielectric
Fx3u 64mr\/es Firmware by Mitsubishielectric
Fx3u 64mr\/ua1 Firmware by Mitsubishielectric
Fx3u 64ms\/es Firmware by Mitsubishielectric
Fx3u 64mt\/ds Firmware by Mitsubishielectric
Fx3u 64mt\/dss Firmware by Mitsubishielectric
Fx3u 64mt\/es A Firmware by Mitsubishielectric
Fx3u 64mt\/es Firmware by Mitsubishielectric
Fx3u 64mt\/ess Firmware by Mitsubishielectric
Fx3u 80mr\/ds Firmware by Mitsubishielectric
Fx3u 80mr\/es A Firmware by Mitsubishielectric
Fx3u 80mr\/es Firmware by Mitsubishielectric
Fx3u 80mt\/ds Firmware by Mitsubishielectric
Fx3u 80mt\/dss Firmware by Mitsubishielectric
Fx3u 80mt\/es A Firmware by Mitsubishielectric
Fx3u 80mt\/es Firmware by Mitsubishielectric
Fx3u 80mt\/ess Firmware by Mitsubishielectric
Fx3u Enet Firmware by Mitsubishielectric
Fx3u Enet L Firmware by Mitsubishielectric
Fx3u Enet P502 Firmware by Mitsubishielectric
Fx3uc 16mr\/d T Firmware by Mitsubishielectric
Fx3uc 16mr\/ds T Firmware by Mitsubishielectric
Fx3uc 16mt\/d Firmware by Mitsubishielectric
Fx3uc 16mt\/d P4 Firmware by Mitsubishielectric
Fx3uc 16mt\/dss Firmware by Mitsubishielectric
Fx3uc 16mt\/dss P4 Firmware by Mitsubishielectric
Fx3uc 32mt Lt 2 Firmware by Mitsubishielectric
Fx3uc 32mt Lt Firmware by Mitsubishielectric
Fx3uc 32mt\/d Firmware by Mitsubishielectric
Fx3uc 32mt\/dss Firmware by Mitsubishielectric
Fx3uc 64mt\/d Firmware by Mitsubishielectric
Fx3uc 64mt\/dss Firmware by Mitsubishielectric
Fx3uc 96mt\/d Firmware by Mitsubishielectric
Fx3uc 96mt\/dss Firmware by Mitsubishielectric
Fx3uc Firmware by Mitsubishielectric
⚠️ Risk & Real-World Impact
Worst Case
Complete takeover of industrial processes, physical damage to equipment, production shutdown, safety system compromise leading to environmental or human harm.
Likely Case
Unauthorized program modification causing production disruption, data theft of proprietary control logic, or installation of backdoors for future attacks.
If Mitigated
Limited impact if systems are air-gapped with strict network segmentation and access controls preventing unauthorized network access.
🎯 Exploit Status
Direct network exploitation without authentication. Attack complexity is low once network access is obtained.
🛠️ Fix & Mitigation
✅ Official Fix
Patch Version: Firmware updates available - check specific module models
Vendor Advisory: https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2023-012_en.pdf
Restart Required: Yes
Instructions:
1. Download firmware update from Mitsubishi Electric support portal. 2. Backup existing programs. 3. Apply firmware update via programming software. 4. Verify update and restore programs if needed.
🔧 Temporary Workarounds
Network Segmentation
allIsolate PLCs in separate network segments with strict firewall rules
Access Control Lists
allImplement IP-based whitelisting for PLC network access
🧯 If You Can't Patch
- Implement strict network segmentation and air-gap from untrusted networks
- Deploy industrial firewall with deep packet inspection and anomaly detection
🔍 How to Verify
Check if Vulnerable:
Check MELSEC-F Series module firmware version against vendor advisory. If network-accessible and unpatched, assume vulnerable.
Check Version:
Use Mitsubishi Electric programming software (GX Works3) to read PLC firmware version
Verify Fix Applied:
Verify firmware version matches patched versions in vendor advisory. Test network access attempts are properly blocked.
📡 Detection & Monitoring
Log Indicators:
- Unauthorized connection attempts to PLC ports
- Unexpected program upload/download events
- Firmware modification attempts
Network Indicators:
- Unusual traffic to MELSEC protocol ports (typically 5006/UDP, 5007/TCP)
- Unauthorized IP addresses accessing PLCs
- Protocol anomalies in MELSEC communications
SIEM Query:
source_ip NOT IN [authorized_ips] AND (destination_port:5006 OR destination_port:5007) AND protocol:UDP
🔗 References
- https://jvn.jp/vu/JVNVU90509290/
- https://www.cisa.gov/news-events/ics-advisories/icsa-23-285-13
- https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2023-012_en.pdf
- https://jvn.jp/vu/JVNVU90509290/
- https://www.cisa.gov/news-events/ics-advisories/icsa-23-285-13
- https://www.mitsubishielectric.com/en/psirt/vulnerability/pdf/2023-012_en.pdf