CyberSec.Space Logo
Back to CVE Browser

CVE-2021-31884

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0150%
EPSS Percentile38.00th
PublishedNov 9, 2021
Last ModifiedNov 21, 2024

Vulnerability Description

A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (PPC) (BACnet) (All versions), APOGEE MEC (PPC) (P2 Ethernet) (All versions), APOGEE PXC Compact (BACnet) (All versions < V3.5.4), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.19), APOGEE PXC Modular (BACnet) (All versions < V3.5.4), APOGEE PXC Modular (P2 Ethernet) (All versions < V2.8.19), Capital VSTAR (All versions with enabled Ethernet options), Desigo PXC00-E.D (All versions >= V2.3 and < V6.30.016), Desigo PXC00-U (All versions >= V2.3 and < V6.30.016), Desigo PXC001-E.D (All versions >= V2.3 and < V6.30.016), Desigo PXC100-E.D (All versions >= V2.3 and < V6.30.016), Desigo PXC12-E.D (All versions >= V2.3 and < V6.30.016), Desigo PXC128-U (All versions >= V2.3 and < V6.30.016), Desigo PXC200-E.D (All versions >= V2.3 and < V6.30.016), Desigo PXC22-E.D (All versions >= V2.3 and < V6.30.016), Desigo PXC22.1-E.D (All versions >= V2.3 and < V6.30.016), Desigo PXC36.1-E.D (All versions >= V2.3 and < V6.30.016), Desigo PXC50-E.D (All versions >= V2.3 and < V6.30.016), Desigo PXC64-U (All versions >= V2.3 and < V6.30.016), Desigo PXM20-E (All versions >= V2.3 and < V6.30.016), Nucleus NET (All versions), Nucleus ReadyStart V3 (All versions < V2017.02.4), Nucleus Source Code (All versions), TALON TC Compact (BACnet) (All versions < V3.5.4), TALON TC Modular (BACnet) (All versions < V3.5.4). The DHCP client application assumes that the data supplied with the β€œHostname” DHCP option is NULL terminated. In cases when global hostname variable is not defined, this may lead to Out-of-bound reads, writes, and Denial-of-service conditions. (FSMD-2021-0014)

Affected Platforms (CPE)

πŸ“¦
Siemens

Capital Vstar

All versions
πŸ“¦
Siemens

Nucleus Net

All versions
πŸ“¦
Siemens

Nucleus Readystart V3

< 2017.02.1
πŸ“¦
Siemens

Nucleus Source Code

All versions
πŸ’»
Siemens

Apogee Modular Building Controller Firmware

All versions
πŸ’»
Siemens

Apogee Modular Equiment Controller Firmware

All versions
πŸ’»
Siemens

Apogee Pxc Compact Firmware

< 2.8.19
πŸ’»
Siemens

Apogee Pxc Modular Firmware

< 2.8.19
πŸ’»
Siemens

Talon Tc Compact Firmware

< 3.5.4
πŸ’»
Siemens

Talon Tc Modular Firmware

< 3.5.4
πŸ’»
Siemens

Desigo Pxc00 E.d Firmware

>= 2.3 and < 6.30.016
πŸ’»
Siemens

Desigo Pxc00 U Firmware

>= 2.3 and < 6.30.016
πŸ’»
Siemens

Desigo Pxc001 E.d Firmware

>= 2.3 and < 6.30.016
πŸ’»
Siemens

Desigo Pxc12 E.d Firmware

>= 2.3 and < 6.30.016
πŸ’»
Siemens

Desigo Pxc22 E.d Firmware

>= 2.3 and < 6.30.016
πŸ’»
Siemens

Desigo Pxc22.1 E.d Firmware

>= 2.3 and < 6.30.016
πŸ’»
Siemens

Desigo Pxc36.1 E.d Firmware

>= 2.3 and < 6.30.016
πŸ’»
Siemens

Desigo Pxc50 E.d Firmware

>= 2.3 and < 6.30.016
πŸ’»
Siemens

Desigo Pxc64 U Firmware

>= 2.3 and < 6.30.016
πŸ’»
Siemens

Desigo Pxc100 E.d Firmware

>= 2.3 and < 6.30.016
πŸ’»
Siemens

Desigo Pxc128 U Firmware

>= 2.3 and < 6.30.016
πŸ’»
Siemens

Desigo Pxc200 E.d Firmware

>= 2.3 and < 6.30.016
πŸ’»
Siemens

Desigo Pxm20 E Firmware

>= 2.3 and < 6.30.016
πŸ’»
Siemens

Apogee Pxc Compact Firmware

< 3.5.4
πŸ’»
Siemens

Apogee Pxc Modular Firmware

< 3.5.4

References & Advisories

Related Vulnerabilities