Unknown
CVE-2021-27458
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2021-27458
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
If Ethernet communication of the JTEKT Corporation TOYOPUC product series’ (TOYOPUC-PC10 Series: PC10G-CPU TCC-6353: All versions, PC10GE TCC-6464: All versions, PC10P TCC-6372: All versions, PC10P-DP TCC-6726: All versions, PC10P-DP-IO TCC-6752: All versions, PC10B-P TCC-6373: All versions, PC10B TCC-1021: All versions, PC10B-E/C TCU-6521: All versions, PC10E TCC-4737: All versions; TOYOPUC-Plus Series: Plus CPU TCC-6740: All versions, Plus EX TCU-6741: All versions, Plus EX2 TCU-6858: All versions, Plus EFR TCU-6743: All versions, Plus EFR2 TCU-6859: All versions, Plus 2P-EFR TCU-6929: All versions, Plus BUS-EX TCU-6900: All versions; TOYOPUC-PC3J/PC2J Series: FL/ET-T-V2H THU-6289: All versions, 2PORT-EFR THU-6404: All versions) are left in an open state by an attacker, Ethernet communications cannot be established with other devices, depending on the settings of the link parameters.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- 2port-efr thu-6404 firmware,
- fl/et-t-v2h thu-6289 firmware,
- pc10b tcc-1021 firmware,
- pc10b-e/c tcu-6521 firmware,
- pc10b-p tcc-6373 firmware,
- pc10e tcc-4737 firmware,
- pc10g-cpu tcc-6353 firmware,
- pc10ge tcc-6464 firmware,
- pc10p tcc-6372 firmware,
- pc10p-dp tcc-6726 firmware,
- pc10p-dp-io tcc-6752 firmware,
- plus 2p-efr tcu-6929 firmware,
- plus bus-ex tcu-6900 firmware,
- plus cpu tcc-6740 firmware,
- plus efr tcu-6743 firmware,
- plus efr2 tcu-6859 firmware,
- plus ex tcu-6741 firmware,
- plus ex2 tcu-6858 firmware
Weaknesses
References
Miscellaneous
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: