Vulnerability Details CVE-2021-27477
When JTEKT Corporation TOYOPUC PLC versions PC10G-CPU, 2PORT-EFR, Plus CPU, Plus EX, Plus EX2, Plus EFR, Plus EFR2, Plus 2P-EFR, PC10P-DP, PC10P-DP-IO, Plus BUS-EX, Nano 10GX, Nano 2ET,PC10PE, PC10PE-16/16P, PC10E, FL/ET-T-V2H, PC10B,PC10B-P, Nano CPU, PC10P, and PC10GE receive an invalid frame, the outside area of a receive buffer for FL-net are overwritten. As a result, the PLC CPU detects a system error, and the affected products stop.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 46.2%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 7.8
Products affected by CVE-2021-27477
-
cpe:2.3:h:jtekt:2port-efr:-
-
cpe:2.3:h:jtekt:fl/et-t-v2h:-
-
cpe:2.3:h:jtekt:nano_10gx:-
-
cpe:2.3:h:jtekt:nano_2et:-
-
cpe:2.3:h:jtekt:nano_cpu:-
-
cpe:2.3:h:jtekt:pc10b-p:-
-
-
-
cpe:2.3:h:jtekt:pc10g-cpu:-
-
-
cpe:2.3:h:jtekt:pc10p-dp-io:-
-
cpe:2.3:h:jtekt:pc10p-dp:-
-
-
cpe:2.3:h:jtekt:pc10pe-16/16p:-
-
-
cpe:2.3:h:jtekt:plus_2p-efr:-
-
cpe:2.3:h:jtekt:plus_bus-ex:-
-
cpe:2.3:h:jtekt:plus_cpu:-
-
cpe:2.3:h:jtekt:plus_efr2:-
-
cpe:2.3:h:jtekt:plus_efr:-
-
cpe:2.3:h:jtekt:plus_ex2:-
-
cpe:2.3:h:jtekt:plus_ex:-
-
cpe:2.3:o:jtekt:2port-efr_firmware:-
-
cpe:2.3:o:jtekt:fl/et-t-v2h_firmware:-
-
cpe:2.3:o:jtekt:nano_10gx_firmware:-
-
cpe:2.3:o:jtekt:nano_2et_firmware:-
-
cpe:2.3:o:jtekt:nano_cpu_firmware:-
-
cpe:2.3:o:jtekt:pc10b-p_firmware:-
-
cpe:2.3:o:jtekt:pc10b_firmware:-
-
cpe:2.3:o:jtekt:pc10e_firmware:-
-
cpe:2.3:o:jtekt:pc10g-cpu_firmware:-
-
cpe:2.3:o:jtekt:pc10ge_firmware:-
-
cpe:2.3:o:jtekt:pc10p-dp-io_firmware:-
-
cpe:2.3:o:jtekt:pc10p-dp_firmware:-
-
cpe:2.3:o:jtekt:pc10p_firmware:-
-
cpe:2.3:o:jtekt:pc10pe-16/16p_firmware:-
-
cpe:2.3:o:jtekt:pc10pe_firmware:-
-
cpe:2.3:o:jtekt:plus_2p-efr_firmware:-
-
cpe:2.3:o:jtekt:plus_bus-ex_firmware:-
-
cpe:2.3:o:jtekt:plus_cpu_firmware:-
-
cpe:2.3:o:jtekt:plus_efr2_firmware:-
-
cpe:2.3:o:jtekt:plus_efr_firmware:-
-
cpe:2.3:o:jtekt:plus_ex2_firmware:-
-
cpe:2.3:o:jtekt:plus_ex_firmware:-