CVE-2021-20986: Hilscher: Denial of Service vulnerability in PROFINET IO Device
Published Feb 16, 2021
·Updated
A Denial of Service vulnerability was found in Hilscher PROFINET IO Device V3 in versions prior to V3.14.0.7. This may lead to unexpected loss of cyclic communication or interruption of acyclic communication.
Affected Software
73 affected components
Hilscher Profinet Io Device Firmware>=3.0<3.14.0.7
Hilscher PROFINET IO Device
Pepperl-fuchs Pgv100-f200a-b17-v1d Firmware<=2.0.0
Pepperl-fuchs Pgv100-f200a-b17-v1d
Pepperl-fuchs Pgv150i-f200a-b17-v1d Firmware<=2.0.0
Pepperl-fuchs Pgv150i-f200a-b17-v1d
Pepperl-fuchs Pgv100-f200-b17-v1d-7477 Firmware<=2.0.0
Pepperl-fuchs Pgv100-f200-b17-v1d-7477
Pepperl-fuchs Pxv100-f200-b17-v1d Firmware<=4.2.0
Pepperl-fuchs Pxv100-f200-b17-v1d
Pepperl-fuchs Pxv100-f200-b17-v1d-3636 Firmware<=4.2.0
Pepperl-fuchs Pxv100-f200-b17-v1d-3636
Pepperl-fuchs Pcv80-f200-b17-v1d Firmware<=3.2.3
Pepperl-fuchs Pcv80-f200-b17-v1d
Pepperl-fuchs Pcv100-f200-b17-v1d Firmware<=3.2.3
Pepperl-fuchs Pcv100-f200-b17-v1d
Pepperl-fuchs Pcv50-f200-b17-v1d Firmware<=3.2.3
Pepperl-fuchs Pcv50-f200-b17-v1d
Pepperl-fuchs Pcv100-f200-b17-v1d-6011-6997 Firmware<=3.2.3
Pepperl-fuchs Pcv100-f200-b17-v1d-6011-6997
Pepperl-fuchs Pcv100-f200-b17-v1d-6011 Firmware<=3.2.5
Pepperl-fuchs Pcv100-f200-b17-v1d-6011
Pepperl-fuchs Pcv100-f200-b17-v1d-6011-8203 Firmware<=3.2.5
Pepperl-fuchs Pcv100-f200-b17-v1d-6011-8203
Pepperl-fuchs Pxv100a-f200-b28-v1d Firmware<=1.0.3
Pepperl-fuchs Pxv100a-f200-b28-v1d
Pepperl-fuchs Pxv100a-f200-b28-v1d-6011 Firmware<=1.0.3
Pepperl-fuchs Pxv100a-f200-b28-v1d-6011
Pepperl-fuchs Pgv100a-f200-b28-v1d Firmware<=1.0.3
Pepperl-fuchs Pgv100a-f200-b28-v1d
Pepperl-fuchs Pgv100a-f200a-b28-v1d Firmware<=1.0.3
Pepperl-fuchs Pgv100a-f200a-b28-v1d
Pepperl-fuchs Pgv100aq-f200a-b28-v1d Firmware<=2.1.1
Pepperl-fuchs Pgv100aq-f200a-b28-v1d
Pepperl-fuchs Pgv100aq-f200-b28-v1d Firmware<=2.1.1
Pepperl-fuchs Pgv100aq-f200-b28-v1d
Pepperl-fuchs Pxv100aq-f200-b28-v1d Firmware<=2.1.1
Pepperl-fuchs Pxv100aq-f200-b28-v1d
Pepperl-fuchs Pxv100aq-f200-b28-v1d-6011 Firmware<=2.1.1
Pepperl-fuchs Pxv100aq-f200-b28-v1d-6011
Pepperl-fuchs Ohv-f230-b17 Firmware<=1.1.0
Pepperl-fuchs Ohv-f230-b17
Pepperl-fuchs Oit500-f113b17-cb Firmware<=1.3.4
Pepperl-fuchs Oit500-f113b17-cb
Pepperl-fuchs Pha Firmware<=3.1.5
Pepperl-fuchs Pha150-f200-b17-v1d
Pepperl-fuchs Pha150-f200a-b17-v1d
Pepperl-fuchs Pha200-f200-b17-v1d
Pepperl-fuchs Pha200-f200a-b17-t-v1d
Pepperl-fuchs Pha200-f200a-b17-v1d
Pepperl-fuchs Pha300-f200-b17-t-v1d
Pepperl-fuchs Pha300-f200-b17-v1d
Pepperl-fuchs Pha300-f200a-b17-t-v1d
Pepperl-fuchs Pha300-f200a-b17-v1d
Pepperl-fuchs Pha400-f200-b17-v1d
Pepperl-fuchs Pha400-f200a-b17-t-v1d
Pepperl-fuchs Pha400-f200a-b17-v1d
Pepperl-fuchs Pha500-f200-b17-v1d
Pepperl-fuchs Pha500-f200a-b17-t-v1d
Pepperl-fuchs Pha500-f200a-b17-v1d
Pepperl-fuchs Pha600-f200-b17-v1d
Pepperl-fuchs Pha600-f200a-b17-v1d
Pepperl-fuchs Pha700-f200-b17-v1d
Pepperl-fuchs Pha800-f200-b17-v1d
Pepperl-fuchs Wcs Firmware<=3.0.0
Pepperl-fuchs Wcs3b-ls610
Pepperl-fuchs Wcs3b-ls610-om
Pepperl-fuchs Wcs3b-ls610d
Pepperl-fuchs Wcs3b-ls610d-om
Pepperl-fuchs Wcs3b-ls610dh
Pepperl-fuchs Wcs3b-ls610dh-om
Pepperl-fuchs Wcs3b-ls610h
Pepperl-fuchs Wcs3b-ls610h-om
Event History
Feb 16, 2021
CVE Published
via MITRE·04:35 PM
Data Sourced
via MITRE·04:35 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-20986?
CVE-2021-20986 is classified as a Denial of Service vulnerability, which can disrupt normal operations of the affected devices.
2
How do I fix CVE-2021-20986?
To mitigate CVE-2021-20986, upgrade Hilscher PROFINET IO Device firmware to version 3.14.0.7 or later.
3
Which versions of Hilscher PROFINET IO Device are affected by CVE-2021-20986?
Versions of Hilscher PROFINET IO Device prior to 3.14.0.7 are affected by CVE-2021-20986.
4
What are the potential impacts of CVE-2021-20986?
CVE-2021-20986 may lead to an unexpected loss of cyclic communication or interruption of acyclic communication.
5
Is CVE-2021-20986 specific to Hilscher devices?
Yes, CVE-2021-20986 specifically affects the Hilscher PROFINET IO Device firmware.