CVE-2021-20986 is a Denial of Service vulnerability affecting Hilscher PROFINET IO Device V3 versions prior to V3.14.0.7, impacting products from Hilscher and Pepperl-Fuchs. This vulnerability could lead to the disruption of cyclic or acyclic communication within industrial control systems. With a CVSS score of 7.5 (HIGH), it has a low attack complexity and requires no user interaction, allowing an unauthenticated attacker to cause a complete loss of availability. There is currently no evidence of active exploitation, nor are there publicly available exploit tools like Metasploit or Nuclei modules. The vulnerability has received minimal community discussion and media coverage, suggesting a low profile in the public domain.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 3.0, < 3.14.0.7CPE matchmatch criteria | cpe:2.3:o:hilscher:profinet_io_device_firmware:*:*:*:*:*:*:*:* | ||
<= 2.0.0CPE matchmatch criteria | cpe:2.3:o:pepperl-fuchs:pgv100-f200a-b17-v1d_firmware:*:*:*:*:*:*:*:* | ||
<= 2.0.0CPE matchmatch criteria | cpe:2.3:o:pepperl-fuchs:pgv150i-f200a-b17-v1d_firmware:*:*:*:*:*:*:*:* | ||
<= 2.0.0CPE matchmatch criteria | cpe:2.3:o:pepperl-fuchs:pgv100-f200-b17-v1d-7477_firmware:*:*:*:*:*:*:*:* | ||
<= 4.2.0CPE matchmatch criteria | cpe:2.3:o:pepperl-fuchs:pxv100-f200-b17-v1d_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Denial of Service in Rexroth ActiveMover using Profinet protocol
Mar 31, 2021Denial of Service in Rexroth ActiveMover using Profinet protocol
Mar 31, 2021Denial of Service in Rexroth ActiveMover using Profinet protocol
Mar 31, 2021Denial of Service in Rexroth ActiveMover using Profinet protocol
Mar 31, 2021Denial of Service in Rexroth ActiveMover using Profinet protocol
Mar 31, 2021Denial of Service in Rexroth ActiveMover using Profinet protocol
Mar 31, 2021