CVE-2021-27477

When JTEKT Corporation TOYOPUC PLC versions PC10G-CPU, 2PORT-EFR, Plus CPU, Plus EX, Plus EX2, Plus EFR, Plus EFR2, Plus 2P-EFR, PC10P-DP, PC10P-DP-IO, Plus BUS-EX, Nano 10GX, Nano 2ET,PC10PE, PC10PE-16/16P, PC10E, FL/ET-T-V2H, PC10B,PC10B-P, Nano CPU, PC10P, and PC10GE receive an invalid frame, the outside area of a receive buffer for FL-net are overwritten. As a result, the PLC CPU detects a system error, and the affected products stop.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
icscertCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 46%
VendorProductVersion
jtektpc10g-cpu_firmware
𝑥
< 3.91
jtekt2port-efr_firmware
𝑥
< 1.50
jtektplus_cpu_firmware
𝑥
< 3.11
jtektplus_ex_firmware
𝑥
< 3.11
jtektplus_ex2_firmware
𝑥
< 3.11
jtektplus_efr_firmware
𝑥
< 3.11
jtektplus_efr2_firmware
𝑥
< 3.11
jtektplus_2p-efr_firmware
𝑥
< 3.11
jtektpc10p-dp_firmware
𝑥
< 1.50
jtektpc10p-dp-io_firmware
𝑥
< 1.50
jtektplus_bus-ex_firmware
𝑥
< 2.13
jtektnano_10gx_firmware
𝑥
< 3.00
jtektnano_2et_firmware
𝑥
< 2.40
jtektpc10pe_firmware
𝑥
< 1.02
jtektpc10pe-16\/16p_firmware
𝑥
< 1.02
jtektpc10e_firmware
𝑥
< 1.02
jtektpc10b_firmware
𝑥
< 1.11
jtektpc10b-p_firmware
𝑥
< 1.11
jtektnano_cpu_firmware
𝑥
< 2.08
jtektpc10p_firmware
𝑥
< 1.05
jtektpc10ge_firmware
𝑥
< 1.04
𝑥
= Vulnerable software versions