{"document":{"acknowledgments":[{"organization":"CERT@VDE","summary":"coordination","urls":["https://certvde.com"]},{"names":["Sharon Brizinov"],"organization":"Claroty","summary":"reporting this vulnerability"}],"category":"csaf_security_advisory","csaf_version":"2.0","distribution":{"tlp":{"label":"WHITE","url":"https://www.first.org/tlp/"}},"lang":"en-US","notes":[{"category":"summary","text":"Critical vulnerability has been discovered in the utilized component 499ES EtherNet/IP Stack by Real Time Automation (RTA).","title":"Summary"},{"category":"description","text":"Pepperl+Fuchs analyzed and identified affected devices.\nRemote attackers may exploit the vulnerability sending specially crafted packages that may result in a denial-of-service condition or code execution.","title":"Impact"},{"category":"description","text":"An external protective measure is required.\n\n- Minimize network exposure for affected products and ensure that they are not accessible via the Internet.\n- Isolate affected products from the corporate network.\n- If remote access is required, use secure methods such as virtual private networks (VPNs).","title":"Mitigation"}],"publisher":{"category":"vendor","contact_details":"cert@pepperl-fuchs.com","name":"Pepperl+Fuchs SE","namespace":"https://www.pepperl-fuchs.com"},"references":[{"category":"external","summary":"Pepperl+Fuchs advisory overview at CERT@VDE","url":"https://certvde.com/de/advisories/vendor/pepperl+fuchs/"},{"category":"self","summary":"VDE-2020-050: Pepperl+Fuchs: Multiple Products - Vulnerability may allow remote attackers to cause a Denial Of Service - HTML","url":"https://certvde.com/en/advisories/VDE-2020-050/"},{"category":"self","summary":"VDE-2020-050: Pepperl+Fuchs: Multiple Products - Vulnerability may allow remote attackers to cause a Denial Of Service - CSAF","url":"https://pepperl-fuchs.csaf-tp.certvde.com/.well-known/csaf/white/2021/vde-2020-050.json"}],"title":"Pepperl+Fuchs: Multiple Products - Vulnerability may allow remote attackers to cause a Denial Of Service","tracking":{"aliases":["VDE-2020-050"],"current_release_date":"2025-05-14T13:00:15.000Z","generator":{"date":"2025-02-10T09:44:37.404Z","engine":{"name":"Secvisogram","version":"2.5.18"}},"id":"VDE-2020-050","initial_release_date":"2021-02-15T13:33:00.000Z","revision_history":[{"date":"2021-02-15T13:33:00.000Z","number":"1","summary":"Initial revision."},{"date":"2025-04-10T13:00:00.000Z","number":"2","summary":"Fixed URLs."},{"date":"2025-05-14T13:00:15.000Z","number":"3","summary":"Fix: added distribution"}],"status":"final","version":"3"}},"product_tree":{"branches":[{"branches":[{"branches":[{"category":"product_name","name":"IC-KP2-1HB17-2V1D","product":{"name":"IC-KP2-1HB17-2V1D","product_id":"CSAFPID-11001"}},{"category":"product_name","name":"IC-KP2-2HB17-2V1D","product":{"name":"Hardware IC-KP2-2HB17-2V1D","product_id":"CSAFPID-11002"}},{"category":"product_name","name":"IC-KP-B17-AIDA1","product":{"name":"Hardware IC-KP-B17-AIDA1","product_id":"CSAFPID-11003"}}],"category":"product_family","name":"Hardware"},{"branches":[{"category":"product_version_range","name":"<=18-31766H","product":{"name":"Firmware <=18-31766H","product_id":"CSAFPID-21001"}},{"category":"product_version_range","name":"<=18-31440H","product":{"name":"Firmware <=18-31440H","product_id":"CSAFPID-21002"}},{"category":"product_version_range","name":"<=18-31785F","product":{"name":"Firmware <=18-31785F","product_id":"CSAFPID-21003"}}],"category":"product_family","name":"Firmware"}],"category":"vendor","name":"Pepperl+Fuchs"}],"product_groups":[{"group_id":"CSAFGID-0001","product_ids":["CSAFPID-31001","CSAFPID-31002","CSAFPID-31003"],"summary":"Affected Products."}],"relationships":[{"category":"installed_on","full_product_name":{"name":"Firmware <=18-31766H installed on IC-KP2-1HB17-2V1D","product_id":"CSAFPID-31001"},"product_reference":"CSAFPID-21001","relates_to_product_reference":"CSAFPID-11001"},{"category":"installed_on","full_product_name":{"name":"Firmware <=18-31440H installed on Hardware IC-KP2-2HB17-2V1D","product_id":"CSAFPID-31002"},"product_reference":"CSAFPID-21002","relates_to_product_reference":"CSAFPID-11002"},{"category":"installed_on","full_product_name":{"name":"Firmware <=18-31785F installed on Hardware IC-KP-B17-AIDA1","product_id":"CSAFPID-31003"},"product_reference":"CSAFPID-21003","relates_to_product_reference":"CSAFPID-11003"}]},"vulnerabilities":[{"cve":"CVE-2020-25159","cwe":{"id":"CWE-121","name":"Stack-based Buffer Overflow"},"notes":[{"category":"description","text":"499ES EtherNet/IP (ENIP) Adaptor Source Code is vulnerable to a stack-based buffer overflow, which may allow an attacker to send a specially crafted packet that may result in a denial-of-service condition or code execution.","title":"Vulnerability Description"}],"product_status":{"known_affected":["CSAFPID-31001","CSAFPID-31002","CSAFPID-31003"]},"remediations":[{"category":"mitigation","details":"An external protective measure is required.\n\n- Minimize network exposure for affected products and ensure that they are not accessible via the Internet.\n- Isolate affected products from the corporate network.\n- If remote access is required, use secure methods such as virtual private networks (VPNs).","group_ids":["CSAFGID-0001"]}],"scores":[{"cvss_v3":{"attackComplexity":"LOW","attackVector":"NETWORK","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL","confidentialityImpact":"HIGH","environmentalScore":9.8,"environmentalSeverity":"CRITICAL","integrityImpact":"HIGH","privilegesRequired":"NONE","scope":"UNCHANGED","temporalScore":9.8,"temporalSeverity":"CRITICAL","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","version":"3.1"},"products":["CSAFPID-31001","CSAFPID-31002","CSAFPID-31003"]}],"title":"CVE-2020-25159"}]}