First published: Fri Jun 25 2021(Updated: )
In Phoenix Contact FL COMSERVER UNI in versions < 2.40 a invalid Modbus exception response can lead to a temporary denial of service.
Credit: info@cert.vde.com
Affected Software | Affected Version | How to fix |
---|---|---|
Phoenixcontact Fl Comserver Uni 232\/422\/485 Firmware | <2.40 | |
Phoenixcontact Fl Comserver Uni 232\/422\/485 | ||
Phoenixcontact Fl Comserver Uni 232\/422\/485-t Firmware | <2.40 | |
Phoenixcontact Fl Comserver Uni 232\/422\/485-t |
Upgrade to the latest firmware, fixed firmware includes versions >= 2.41.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-21002.
The severity of CVE-2021-21002 is high with a score of 7.5.
An invalid Modbus exception response can cause a temporary denial of service by disrupting the normal operation of the COMSERVER UNI.
Versions up to but excluding 2.40 of Phoenix Contact FL COMSERVER UNI are affected by CVE-2021-21002.
To mitigate the vulnerability, update Phoenix Contact FL COMSERVER UNI to a version higher than or equal to 2.40.