A denial of service and memory corruption vulnerability was found in Hilscher EtherNet/IP Core V2 prior to V2.13.0.21that may lead to code injection through network or make devices crash without recovery.
References
Link | Resource |
---|---|
https://cert.vde.com/en-us/advisories/vde-2021-007 | Third Party Advisory |
https://kb.hilscher.com/pages/viewpage.action?pageId=108969480 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
History
No history.
Information
Published : 2021-02-16 17:15
Updated : 2022-04-26 14:11
NVD link : CVE-2021-20987
Mitre link : CVE-2021-20987
CVE.ORG link : CVE-2021-20987
JSON object : View
Products Affected
hilscher
- ethernet\/ip_adapter_firmware
- ethernet\/ip_adapter
pepperl-fuchs
- pcv50-f200-b25-v1d_firmware
- wcs3b-ls510dh-om
- pcv80-f200-b25-v1d
- wcs3b-ls510d
- wcs3b-ls510-om
- wcs3b-ls510h
- pxv100-f200-b25-v1d_firmware
- wcs3b-ls510h-om
- pcv100-f200-b25-v1d-6011
- pcv100-f200-b25-v1d-6011-6720_firmware
- wcs3b-ls510
- pxv100-f200-b25-v1d
- wcs3b-ls510d-om
- pxv100i-f200-b25-v1d
- pcv50-f200-b25-v1d
- wcs_firmware
- pcv80-f200-b25-v1d_firmware
- pcv100-f200-b25-v1d-6011-6720
- pcv100-f200-b25-v1d-6011_firmware
- wcs3b-ls510dh
- pxv100i-f200-b25-v1d_firmware
CWE
CWE-787
Out-of-bounds Write